Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242981 7.5 危険 RWC - Free Realty の agentadmin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1708 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
242982 7.5 危険 2daybiz - 2daybiz Auction Script の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1706 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
242983 5 警告 Apache Software Foundation - Apache ActiveMQ の Jetty ResourceHandler における JSP ソースコードを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2010-1587 2012-06-26 16:19 2010-04-28 Show GitHub Exploit DB Packet Storm
242984 7.8 危険 シスコシステムズ - CDS に使用されている Cisco Internet Streamer におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1577 2012-06-26 16:19 2010-07-21 Show GitHub Exploit DB Packet Storm
242985 9 危険 シスコシステムズ - Cisco AXP のテクニカルサポート診断シェルにおける管理者権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-1572 2012-06-26 16:19 2010-06-9 Show GitHub Exploit DB Packet Storm
242986 7.8 危険 シスコシステムズ - Cisco UCCX の bootstrap サービスにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1571 2012-06-26 16:19 2010-06-9 Show GitHub Exploit DB Packet Storm
242987 7.8 危険 シスコシステムズ - Cisco UCCX の CTI サーバコンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-1570 2012-06-26 16:19 2010-06-9 Show GitHub Exploit DB Packet Storm
242988 5 警告 シスコシステムズ - Cisco IronPort Desktop Flag Plug-in for Outlook の Send Secure 機能における電子メールの平文コンテンツを取得される脆弱性 CWE-310
暗号の問題
CVE-2010-1568 2012-06-26 16:19 2010-05-11 Show GitHub Exploit DB Packet Storm
242989 7.8 危険 シスコシステムズ - Cisco PGW 2200 Softswitch の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1567 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
242990 7.8 危険 シスコシステムズ - Cisco PGW 2200 Softswitch の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1565 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266851 4.3 MEDIUM
Network
cisco hosted_collaboration_mediation_fulfillment Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a … CWE-22
Path Traversal
CVE-2016-6370 2024-11-21 11:55 2016-09-12 Show GitHub Exploit DB Packet Storm
266852 6.5 MEDIUM
Network
ibm websphere_portal IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF30, 8.0.0 through 8.0.0.1 CF21, and 8.5.0 before CF12 allows remote authenticated users to cause a… CWE-284
Improper Access Control
CVE-2016-5954 2024-11-21 11:55 2016-09-12 Show GitHub Exploit DB Packet Storm
266853 5.5 MEDIUM
Local
ibm tivoli_storage_manager_for_space_management IBM Tivoli Storage Manager for Space Management (aka Spectrum Protect for Space Management) 6.3.x before 6.3.2.6, 6.4.x before 6.4.3.3, and 7.1.x before 7.1.6, when certain dsmsetpw tracing is config… CWE-200
Information Exposure
CVE-2016-5927 2024-11-21 11:55 2016-09-12 Show GitHub Exploit DB Packet Storm
266854 5.3 MEDIUM
Network
drupal drupal The Views module 7.x-3.x before 7.x-3.14 in Drupal 7.x and the Views module in Drupal 8.x before 8.1.3 might allow remote authenticated users to bypass intended access restrictions and obtain sensiti… CWE-200
Information Exposure
CVE-2016-6212 2024-11-21 11:55 2016-09-9 Show GitHub Exploit DB Packet Storm
266855 8.8 HIGH
Network
drupal
debian
drupal
debian_linux
The User module in Drupal 7.x before 7.44 allows remote authenticated users to gain privileges via vectors involving contributed or custom code that triggers a rebuild of the user profile form. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6211 2024-11-21 11:55 2016-09-9 Show GitHub Exploit DB Packet Storm
266856 7.5 HIGH
Network
gnu libidn The stringprep_utf8_nfkc_normalize function in lib/nfkc.c in libidn before 1.33 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via crafted UTF-8 data. CWE-125
Out-of-bounds Read
CVE-2016-6263 2024-11-21 11:55 2016-09-8 Show GitHub Exploit DB Packet Storm
266857 7.5 HIGH
Network
gnu
canonical
opensuse
libidn
ubuntu_linux
leap
opensuse
idn in libidn before 1.33 might allow remote attackers to obtain sensitive memory information by reading a zero byte as input, which triggers an out-of-bounds read, a different vulnerability than CVE… CWE-125
Out-of-bounds Read
CVE-2016-6262 2024-11-21 11:55 2016-09-8 Show GitHub Exploit DB Packet Storm
266858 7.5 HIGH
Network
opensuse
gnu
canonical
leap
libidn
ubuntu_linux
The idna_to_ascii_4i function in lib/idna.c in libidn before 1.33 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via 64 bytes of input. CWE-125
Out-of-bounds Read
CVE-2016-6261 2024-11-21 11:55 2016-09-8 Show GitHub Exploit DB Packet Storm
266859 7.0 HIGH
Local
huawei honor_6_firmware The WiFi driver in Huawei Honor 6 smartphones with software H60-L01 before H60-L01C00B850, H60-L11 before H60-L11C00B850, H60-L21 before H60-L21C00B850, H60-L02 before H60-L02C00B850, H60-L12 before … CWE-284
Improper Access Control
CVE-2016-6179 2024-11-21 11:55 2016-09-8 Show GitHub Exploit DB Packet Storm
266860 7.8 HIGH
Local
cracklib_project
opensuse
debian
cracklib
leap
debian_linux
Stack-based buffer overflow in the FascistGecosUser function in lib/fascist.c in cracklib allows local users to cause a denial of service (application crash) or gain privileges via a long GECOS field… CWE-787
 Out-of-bounds Write
CVE-2016-6318 2024-11-21 11:55 2016-09-8 Show GitHub Exploit DB Packet Storm