Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 4:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242761 6.8 警告 giaard - ProMan におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2138 2012-06-26 16:19 2010-06-2 Show GitHub Exploit DB Packet Storm
242762 7.5 危険 giaard - ProMan の _center.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2137 2012-06-26 16:19 2010-06-2 Show GitHub Exploit DB Packet Storm
242763 6.8 警告 articlefriendly - Article Friendly の admin/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2136 2012-06-26 16:19 2010-06-2 Show GitHub Exploit DB Packet Storm
242764 7.5 危険 danny ho - OES における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2132 2012-06-26 16:19 2010-06-2 Show GitHub Exploit DB Packet Storm
242765 4.3 警告 arisglobal - Aris Global ARISg の wflogin.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2130 2012-06-26 16:19 2010-06-2 Show GitHub Exploit DB Packet Storm
242766 7.5 危険 bartels-schoene - Bartels Schone ConPresso の firma.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2124 2012-06-26 16:19 2010-06-1 Show GitHub Exploit DB Packet Storm
242767 2.6 注意 brekeke - Brekeke PBX の pbx/gate におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2114 2012-06-26 16:19 2010-05-28 Show GitHub Exploit DB Packet Storm
242768 4.3 警告 Apache Software Foundation - SAP Business Objects などで使用される Apache Axis2/Java の axis2-admin/axis2-admin/engagingglobally におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2103 2012-06-26 16:19 2010-05-27 Show GitHub Exploit DB Packet Storm
242769 7.5 危険 e107.org - e107 の bbcode/php.bb における PHP リモートファイルインクルージョンの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2099 2012-06-26 16:19 2010-05-27 Show GitHub Exploit DB Packet Storm
242770 7.5 危険 e107.org - e107 の usersettings.php におけるSQL インジェクション攻撃を誘発される脆弱性 CWE-Other
その他
CVE-2010-2098 2012-06-26 16:19 2010-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268971 7.8 HIGH
Local
wireshark wireshark Untrusted search path vulnerability in the WiresharkApplication class in ui/qt/wireshark_application.cpp in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 on Windows allows local users to gai… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2521 2024-11-21 11:48 2016-02-28 Show GitHub Exploit DB Packet Storm
268972 7.5 HIGH
Network
squid-cache squid http.cc in Squid 4.x before 4.0.7 relies on the HTTP status code after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) vi… CWE-20
 Improper Input Validation 
CVE-2016-2572 2024-11-21 11:48 2016-02-27 Show GitHub Exploit DB Packet Storm
268973 7.5 HIGH
Network
squid-cache squid http.cc in Squid 3.x before 3.5.15 and 4.x before 4.0.7 proceeds with the storage of certain data after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (asse… CWE-20
 Improper Input Validation 
CVE-2016-2571 2024-11-21 11:48 2016-02-27 Show GitHub Exploit DB Packet Storm
268974 7.5 HIGH
Network
squid-cache squid The Edge Side Includes (ESI) parser in Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not check buffer limits during XML parsing, which allows remote HTTP servers to cause a denial of service (ass… CWE-20
 Improper Input Validation 
CVE-2016-2570 2024-11-21 11:48 2016-02-27 Show GitHub Exploit DB Packet Storm
268975 7.5 HIGH
Network
squid-cache squid Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not properly append data to String objects, which allows remote servers to cause a denial of service (assertion failure and daemon exit) via a long s… CWE-20
 Improper Input Validation 
CVE-2016-2569 2024-11-21 11:48 2016-02-27 Show GitHub Exploit DB Packet Storm
268976 7.8 HIGH
Local
flexera installshield Untrusted search path vulnerability in Flexera InstallShield through 2015 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory of a setup-launcher executa… NVD-CWE-Other
CVE-2016-2542 2024-11-21 11:48 2016-02-24 Show GitHub Exploit DB Packet Storm
268977 7.5 HIGH
Network
is_my_json_valid_project is_my_json_valid The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports['utc-millisec'] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via… CWE-20
 Improper Input Validation 
CVE-2016-2537 2024-11-21 11:48 2016-02-23 Show GitHub Exploit DB Packet Storm
268978 8.8 HIGH
Network
sap
google
3d_visual_enterprise_viewer
sketchup
Multiple use-after-free vulnerabilities in SAP 3D Visual Enterprise Viewer allow remote attackers to execute arbitrary code via a crafted SketchUp document. NOTE: the primary affected product may be… CWE-399
 Resource Management Errors
CVE-2016-2536 2024-11-21 11:48 2016-02-23 Show GitHub Exploit DB Packet Storm
268979 5.9 MEDIUM
Network
fedoraproject
digium
fedora
asterisk
certified_asterisk
chan_sip in Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3, when the timert1 sip.conf… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2016-2316 2024-11-21 11:48 2016-02-23 Show GitHub Exploit DB Packet Storm
268980 6.5 MEDIUM
Network
digium asterisk
certified_asterisk
Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3 allow remote authenticated users to ca… NVD-CWE-Other
CVE-2016-2232 2024-11-21 11:48 2016-02-23 Show GitHub Exploit DB Packet Storm