Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242701 7.5 危険 Simple Machines
fustrate
- SMF 用 Member Awards コンポーネントの awardsMembers 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2385 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242702 7.5 危険 blogtrafficexchange
WordPress.org
- WordPress 用の Related Sites プラグインの BTE_RW_Webajax.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2383 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242703 5 警告 gizmo5 - Linux 上の Gizmo における任意のユーザの資格情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-2381 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242704 4.3 警告 4homepages - 4images の includes/functions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2380 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242705 6.8 警告 BIGACE - BIGACE Web CMS の public/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2379 2012-06-26 16:10 2009-07-1 Show GitHub Exploit DB Packet Storm
242706 4.3 警告 avax-software - AVAX-software Avax Vector ActiveX の Avax Vector ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2377 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242707 7.5 危険 datachecknh - DataCheck Solutions ForumPal FE および ForumPal の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2366 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242708 7.5 危険 datachecknh - DataCheck Solutions GalleryPal FE の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2365 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242709 9.3 危険 dan cahill - NullLogic Groupware の pgsqlQuery 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2356 2012-06-26 16:10 2009-07-7 Show GitHub Exploit DB Packet Storm
242710 6.8 警告 eaccelerator - eAccelerator の encoder.php における 任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2353 2012-06-26 16:10 2009-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267581 7.5 HIGH
Network
cisco firesight_system_software Cisco FirePOWER System Software 5.3.x through 5.3.0.6 and 5.4.x through 5.4.0.3 on FirePOWER 7000 and 8000 appliances, and on the Advanced Malware Protection (AMP) for Networks component on these app… CWE-399
 Resource Management Errors
CVE-2016-1368 2024-11-21 11:46 2016-05-6 Show GitHub Exploit DB Packet Storm
267582 7.8 HIGH
Local
canonical
linux
ubuntu_touch
ubuntu_linux
ubuntu_core
linux_kernel
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top o… NVD-CWE-noinfo
CVE-2016-1576 2024-11-21 11:46 2016-05-2 Show GitHub Exploit DB Packet Storm
267583 7.8 HIGH
Local
linux
canonical
linux_kernel
ubuntu_touch
ubuntu_linux
ubuntu_core
The overlayfs implementation in the Linux kernel through 4.5.2 does not properly maintain POSIX ACL xattr data, which allows local users to gain privileges by leveraging a group-writable setgid direc… CWE-269
 Improper Privilege Management
CVE-2016-1575 2024-11-21 11:46 2016-05-2 Show GitHub Exploit DB Packet Storm
267584 10.0 CRITICAL
Network
cisco information_server The XML parser in Cisco Information Server (CIS) 6.2 allows remote attackers to read arbitrary files or cause a denial of service (CPU and memory consumption) via an external entity declaration in co… NVD-CWE-Other
CVE-2016-1343 2024-11-21 11:46 2016-04-30 Show GitHub Exploit DB Packet Storm
267585 7.4 HIGH
Network
cisco webex_meetings_server Open redirect vulnerability in Cisco WebEx Meetings Server (CWMS) 2.6 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID… NVD-CWE-Other
CVE-2016-1389 2024-11-21 11:46 2016-04-29 Show GitHub Exploit DB Packet Storm
267586 7.5 HIGH
Network
cisco application_policy_infrastructure_controller_enterprise_module The API in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0(1) allows remote attackers to spoof administrative notifications via crafted attribute-value pairs, aka B… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1386 2024-11-21 11:46 2016-04-29 Show GitHub Exploit DB Packet Storm
267587 9.8 CRITICAL
Network
suse yast2 yast2-users before 3.1.47, as used in SUSE Linux Enterprise 12 SP1, does not properly set empty password fields in /etc/shadow during an AutoYaST installation when the profile does not contain inst-s… CWE-255
Credentials Management
CVE-2016-1601 2024-11-21 11:46 2016-04-26 Show GitHub Exploit DB Packet Storm
267588 5.4 MEDIUM
Network
novell service_desk Multiple cross-site scripting (XSS) vulnerabilities in Micro Focus Novell Service Desk before 7.2 allow remote authenticated users to inject arbitrary web script or HTML via a certain (1) user name, … CWE-79
Cross-site Scripting
CVE-2016-1596 2024-11-21 11:46 2016-04-22 Show GitHub Exploit DB Packet Storm
267589 6.5 MEDIUM
Network
novell service_desk LiveTime/WebObjects/LiveTime.woa/wa/DownloadAction/downloadFile in Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to conduct Hibernate Query Language (HQL) injection att… CWE-200
Information Exposure
CVE-2016-1595 2024-11-21 11:46 2016-04-22 Show GitHub Exploit DB Packet Storm
267590 6.5 MEDIUM
Network
novell service_desk Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request to a LiveTime.woa URL, as demonstrated by obtaining sensitive information via … CWE-200
Information Exposure
CVE-2016-1594 2024-11-21 11:46 2016-04-22 Show GitHub Exploit DB Packet Storm