Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243001 7.5 危険 WordPress.org
grupenet
- WordPress 用 WP-Lytebox プラグインの main.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4672 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243002 7.5 危険 beaussier - RoomPHPlanning の Login.php における管理アクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-4671 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243003 7.5 危険 beaussier - RoomPHPlanning の admin/delitem.php における任意のルームを削除される脆弱性 CWE-287
不適切な認証
CVE-2009-4670 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243004 7.5 危険 beaussier - RoomPHPlanning における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4669 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243005 9.3 危険 JetAudio - jetAudio の JetCast.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4668 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243006 5 警告 CuteSoft Components - ASP.NET 用の CuteSoft Components Cute Editor におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4665 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
243007 3.3 注意 Linux
fwbuilder
- Firewall Builder における権限を取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2009-4664 2012-06-26 16:19 2010-03-3 Show GitHub Exploit DB Packet Storm
243008 4.3 警告 BigAntSoft - BigAnt Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4661 2012-06-26 16:19 2010-03-3 Show GitHub Exploit DB Packet Storm
243009 10 危険 BigAntSoft - BigAnt IM Server の AntServer モジュール (AntServer.exe) におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4660 2012-06-26 16:19 2010-03-3 Show GitHub Exploit DB Packet Storm
243010 9.3 危険 e-soft.co - E-Soft DJ Studio Pro におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4656 2012-06-26 16:19 2010-03-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267551 7.8 HIGH
Local
nvidia geforce_experience For the NVIDIA Quadro, NVS, and GeForce products, GFE GameStream and NVTray Plugin unquoted service path vulnerabilities are examples of the unquoted service path vulnerability in Windows. A successf… NVD-CWE-Other
CVE-2016-3161 2024-11-21 11:49 2016-11-9 Show GitHub Exploit DB Packet Storm
267552 5.7 MEDIUM
Network
ibm financial_transaction_manager Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services, and Corporate Payment Services (CPS) 3.0.0.x before fp0015 and 3.0.1.0 before iFix0002 allows remote aut… CWE-284
Improper Access Control
CVE-2016-3060 2024-11-21 11:49 2016-10-29 Show GitHub Exploit DB Packet Storm
267553 7.8 HIGH
Local
microsoft word_viewer
live_meeting
windows_server_2012
lync
office
windows_10
windows_8.1
windows_server_2008
skype_for_business
windows_7
windows_rt_8.1
windows_vista
Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3396 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267554 5.3 MEDIUM
Network
microsoft edge The Edge Content Security Policy feature in Microsoft Edge does not properly validate documents, which allows remote attackers to bypass intended access restrictions via a crafted web site, aka "Micr… CWE-284
Improper Access Control
CVE-2016-3392 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267555 5.3 MEDIUM
Network
microsoft internet_explorer
edge
Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow context-dependent attackers to discover credentials by leveraging access to a memory dump, aka "Microsoft Browser Information Disclosure… CWE-200
Information Exposure
CVE-2016-3391 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267556 7.5 HIGH
Network
microsoft edge
internet_explorer
The scripting engines in Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, as… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3390 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267557 7.5 HIGH
Network
microsoft edge The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3389 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267558 5.3 MEDIUM
Network
microsoft internet_explorer
edge
Microsoft Internet Explorer 10 and 11 and Microsoft Edge do not properly restrict access to private namespaces, which allows remote attackers to gain privileges via unspecified vectors, aka "Microsof… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3388 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267559 7.5 HIGH
Network
microsoft internet_explorer
edge
Microsoft Internet Explorer 10 and 11 and Microsoft Edge do not properly restrict access to private namespaces, which allows remote attackers to gain privileges via unspecified vectors, aka "Microsof… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3387 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm
267560 7.5 HIGH
Network
microsoft edge The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3386 2024-11-21 11:49 2016-10-14 Show GitHub Exploit DB Packet Storm