Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242581 5 警告 Novell - Novell GroupWise の WebAccess におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-0410 2012-07-6 14:34 2012-03-26 Show GitHub Exploit DB Packet Storm
242582 5 警告 Invensys - Invensys InTouch および Wonderware Application Server におけるサービス運用妨害 (リソース消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-3847 2012-07-6 14:31 2012-07-5 Show GitHub Exploit DB Packet Storm
242583 5 警告 Invensys - Invensys System Platform software suite におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3007 2012-07-6 14:27 2012-07-5 Show GitHub Exploit DB Packet Storm
242584 9.3 危険 General Electric Company - GE Intelligent Platforms 製品で使用される KeyWorks KeyHelp における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2012-2516 2012-07-6 14:11 2012-04-24 Show GitHub Exploit DB Packet Storm
242585 9.3 危険 General Electric Company
DELL EMC (旧 EMC Corporation)
- EMC および GE 製品などで使用される KeyWorks KeyHelp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2515 2012-07-6 14:10 2012-04-24 Show GitHub Exploit DB Packet Storm
242586 - - (複数のベンダ) - 複数のビデオドライバが ASLR 機能をサポートしていない問題 - - 2012-07-6 14:06 2012-06-7 Show GitHub Exploit DB Packet Storm
242587 5 警告 WellinTech - WellinTech KingView におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2560 2012-07-6 14:06 2012-06-27 Show GitHub Exploit DB Packet Storm
242588 10 危険 WellinTech - WellinTech KingHistorian における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-2559 2012-07-6 14:01 2012-07-3 Show GitHub Exploit DB Packet Storm
242589 10 危険 WellinTech - WellinTech KingView におけるにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-1832 2012-07-6 13:59 2012-06-27 Show GitHub Exploit DB Packet Storm
242590 10 危険 WellinTech - WellinTech KingView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1831 2012-07-6 13:53 2012-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266341 9.8 CRITICAL
Network
apache tika
nutch
Apache Tika before 1.14 allows Java code execution for serialized objects embedded in MATLAB files. The issue exists because Tika invokes JMatIO to do native deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2016-6809 2024-11-21 11:56 2017-04-7 Show GitHub Exploit DB Packet Storm
266342 7.5 HIGH
Network
illumos illumos illumos smbsrv NULL pointer dereference allows system crash. CWE-476
 NULL Pointer Dereference
CVE-2016-6561 2024-11-21 11:56 2017-04-1 Show GitHub Exploit DB Packet Storm
266343 8.6 HIGH
Network
illumos illumos illumos osnet-incorporation bcopy() and bzero() implementations make signed instead of unsigned comparisons allowing a system crash. CWE-20
 Improper Input Validation 
CVE-2016-6560 2024-11-21 11:56 2017-04-1 Show GitHub Exploit DB Packet Storm
266344 6.1 MEDIUM
Network
open-xchange open-xchange_appsuite_backend
documentconverter-api
office_web
open-xchange_appsuite_frontend
Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite backend before 7.6.2-rev59, 7.8.0 before 7.8.0-rev38, 7.8.2 before 7.8.2-rev8; AppSuite frontend before 7.6.2-rev47, 7.8.0 befor… CWE-79
Cross-site Scripting
CVE-2016-6846 2024-11-21 11:56 2017-03-29 Show GitHub Exploit DB Packet Storm
266345 9.8 CRITICAL
Network
apache ambari Custom commands may be executed on Ambari Agent (2.4.x, before 2.4.2) hosts without authorization, leading to unauthorized access to operations that may affect the underlying system. Such operations … CWE-284
Improper Access Control
CVE-2016-6807 2024-11-21 11:56 2017-03-29 Show GitHub Exploit DB Packet Storm
266346 7.5 HIGH
Network
emc recoverpoint_for_virtual_machines
recoverpoint
EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual Machines versions prior to 5.0 have an SSL Stripping Vulnerability that may potentially be exploited by malicious users to comp… CWE-200
Information Exposure
CVE-2016-6650 2024-11-21 11:56 2017-03-22 Show GitHub Exploit DB Packet Storm
266347 7.1 HIGH
Network
apache tomcat The code in Apache Tomcat 9.0.0.M1 to 9.0.0.M11, 8.5.0 to 8.5.6, 8.0.0.RC1 to 8.0.38, 7.0.0 to 7.0.72, and 6.0.0 to 6.0.47 that parsed the HTTP request line permitted invalid characters. This could b… CWE-20
 Improper Input Validation 
CVE-2016-6816 2024-11-21 11:56 2017-03-21 Show GitHub Exploit DB Packet Storm
266348 5.5 MEDIUM
Local
openbsd openbsd Integer overflow in the uvm_map_isavail function in uvm/uvm_map.c in OpenBSD 5.9 allows local users to cause a denial of service (kernel panic) via a crafted mmap call, which triggers the new mapping… CWE-190
 Integer Overflow or Wraparound
CVE-2016-6522 2024-11-21 11:56 2017-03-8 Show GitHub Exploit DB Packet Storm
266349 7.5 HIGH
Network
magento magento2 The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random number for the initialization vector, which makes it easier for remote attacker… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2016-6485 2024-11-21 11:56 2017-03-2 Show GitHub Exploit DB Packet Storm
266350 9.8 CRITICAL
Network
facebook hhvm Infinite recursion in wddx in Facebook HHVM before 3.15.0 allows attackers to have unspecified impact via unknown vectors. NVD-CWE-Other
CVE-2016-6875 2024-11-21 11:56 2017-02-18 Show GitHub Exploit DB Packet Storm