Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243071 5 警告 geopp - Geo++ GNCASTER の HTTP authentication 実装における他のユーザの認証ヘッダを読まれる脆弱性 CWE-200
情報漏えい
CVE-2010-0551 2012-06-26 16:19 2010-02-4 Show GitHub Exploit DB Packet Storm
243072 4 警告 geopp - Geo++ GNCASTER の admin.htm における HTTP Basic Authentication を使用される脆弱性 CWE-287
不適切な認証
CVE-2010-0550 2012-06-26 16:19 2010-02-4 Show GitHub Exploit DB Packet Storm
243073 5 警告 アップル
フリービット株式会社
- iPod touch の FreeBit ServersMan におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0496 2012-06-26 16:19 2010-02-3 Show GitHub Exploit DB Packet Storm
243074 7.5 危険 enanocms - Enano CMS のコメント登録インターフェースにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0471 2012-06-26 16:19 2010-02-2 Show GitHub Exploit DB Packet Storm
243075 4.3 警告 comtrend - Comtrend CT-507IT ADSL ルータの scvrtsrv.cmd におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0470 2012-06-26 16:19 2010-02-2 Show GitHub Exploit DB Packet Storm
243076 7.5 危険 files2links - Files2Links F2L 3000 機器における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0469 2012-06-26 16:19 2010-02-2 Show GitHub Exploit DB Packet Storm
243077 5 警告 Chill Creations
Joomla!
- Joomla! の ccNewsletter コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0467 2012-06-26 16:19 2010-02-2 Show GitHub Exploit DB Packet Storm
243078 7.5 危険 a3malnet - magic-portal の home.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0457 2012-06-26 16:19 2010-01-28 Show GitHub Exploit DB Packet Storm
243079 7.5 危険 fabricadigital - Publique! の cgi/cgilua.exe/sys/start.htm における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0454 2012-06-26 16:19 2010-01-28 Show GitHub Exploit DB Packet Storm
243080 5 警告 Digium - Asterisk Open Source におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0441 2012-06-26 16:19 2010-02-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267551 8.1 HIGH
Network
huawei s12700_firmware
s5700_firmware
Huawei S12700 switches with software before V200R008C00SPC500 and S5700 switches with software before V200R005SPH010, when the debug switch is enabled, allows remote attackers to cause a denial of se… CWE-20
 Improper Input Validation 
CVE-2016-4087 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267552 7.5 HIGH
Network
quagga
opensuse
quagga
leap
opensuse
The bgp_dump_routes_func function in bgpd/bgp_dump.c in Quagga does not perform size checks when dumping data, which might allow remote attackers to cause a denial of service (assertion failure and d… CWE-20
 Improper Input Validation 
CVE-2016-4049 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267553 6.0 MEDIUM
Local
fedoraproject
canonical
qemu
debian
fedora
ubuntu_linux
qemu
debian_linux
The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular split isochronous tra… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-4037 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267554 8.6 HIGH
Network
qemu
canonical
fedoraproject
debian
qemu
ubuntu_linux
fedora
debian_linux
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cau… CWE-120
Classic Buffer Overflow
CVE-2016-4001 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267555 7.5 HIGH
Network
opensuse
golang
fedoraproject
leap
go
fedora
The Verify function in crypto/dsa/dsa.go in Go before 1.5.4 and 1.6.x before 1.6.1 does not properly check parameters passed to the big integer library, which might allow remote attackers to cause a … CWE-20
 Improper Input Validation 
CVE-2016-3959 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267556 7.8 HIGH
Local
golang go Untrusted search path vulnerability in Go before 1.5.4 and 1.6.x before 1.6.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, related to use … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3958 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
267557 9.8 CRITICAL
Network
php
opensuse
php
leap
opensuse
Integer overflow in the str_pad function in ext/standard/string.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a long string,… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4346 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
267558 9.8 CRITICAL
Network
php php Integer overflow in the php_filter_encode_url function in ext/filter/sanitizing_filters.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other i… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4345 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
267559 9.8 CRITICAL
Network
php php Integer overflow in the xml_utf8_encode function in ext/xml/xml.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a long argumen… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4344 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
267560 8.8 HIGH
Network
php
opensuse
php
opensuse
The phar_make_dirstream function in ext/phar/dirstream.c in PHP before 5.6.18 and 7.x before 7.0.3 mishandles zero-size ././@LongLink files, which allows remote attackers to cause a denial of service… CWE-824
 Access of Uninitialized Pointer
CVE-2016-4343 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm