Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243271 6.8 警告 Phillip Lougher - Squashfs の unsquashfs の unsquashfs.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4024 2012-07-23 13:43 2012-07-19 Show GitHub Exploit DB Packet Storm
243272 9.3 危険 シスコシステムズ - Cisco Linksys PlayerPT ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0284 2012-07-23 11:53 2012-07-19 Show GitHub Exploit DB Packet Storm
243273 10 危険 OpenJPEG project - OpenJPEG の j2k.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3358 2012-07-23 11:52 2012-07-10 Show GitHub Exploit DB Packet Storm
243274 6.8 警告 OpenJPEG project - OpenJPEG の tcd.c 内の tcd_free_encode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-5030 2012-07-23 11:33 2012-05-29 Show GitHub Exploit DB Packet Storm
243275 10 危険 Zingiri - WordPress 用 Zingiri Web Shop プラグインにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-4033 2012-07-23 11:29 2012-07-18 Show GitHub Exploit DB Packet Storm
243276 7.5 危険 Florian Weber - Drupal 用 Spaces モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2303 2012-07-23 11:28 2012-04-25 Show GitHub Exploit DB Packet Storm
243277 10 危険 サン・マイクロシステムズ
オラクル
- Oracle Fusion Middleware の Oracle JRockit における脆弱性 CWE-noinfo
情報不足
CVE-2012-3135 2012-07-20 18:06 2012-07-17 Show GitHub Exploit DB Packet Storm
243278 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle MapViewer における脆弱性 CWE-noinfo
情報不足
CVE-2012-3115 2012-07-20 18:04 2012-07-17 Show GitHub Exploit DB Packet Storm
243279 5 警告 オラクル - Oracle Fusion Middleware の Oracle MapViewer における脆弱性 CWE-noinfo
情報不足
CVE-2012-1749 2012-07-20 17:50 2012-07-17 Show GitHub Exploit DB Packet Storm
243280 5.8 警告 オラクル - Oracle Fusion Middleware の Enterprise Manager for Fusion Middleware における脆弱性 CWE-noinfo
情報不足
CVE-2012-1741 2012-07-20 17:47 2012-07-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268091 7.5 HIGH
Network
apache shiro Apache Shiro before 1.3.2 allows attackers to bypass intended servlet filters and gain access by leveraging use of a non-root servlet context path. CWE-284
Improper Access Control
CVE-2016-6802 2024-11-21 11:56 2016-09-21 Show GitHub Exploit DB Packet Storm
268092 9.8 CRITICAL
Network
oracle
percona
mariadb
debian
redhat
mysql
percona_server
mariadb
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux
openstack
enterprise_linux_server
enterprise_linux_server_t…
Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before 10.1.17; and Percona Server before 5.5.51-38.1, 5.6.x befo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6662 2024-11-21 11:56 2016-09-21 Show GitHub Exploit DB Packet Storm
268093 7.5 HIGH
Network
aver eh6108h\+_firmware AVer Information EH6108H+ devices with firmware X9.03.24.00.07l store passwords in a cleartext base64 format and require cleartext credentials in HTTP Cookie headers, which allows context-dependent a… CWE-200
Information Exposure
CVE-2016-6537 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268094 9.8 CRITICAL
Network
aver eh6108h\+_firmware The /setup URI on AVer Information EH6108H+ devices with firmware X9.03.24.00.07l allows remote attackers to bypass intended page-access restrictions or modify passwords by leveraging knowledge of a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6536 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268095 9.8 CRITICAL
Network
aver eh6108h\+_firmware AVer Information EH6108H+ devices with firmware X9.03.24.00.07l have hardcoded accounts, which allows remote attackers to obtain root access by leveraging knowledge of the credentials and establishin… CWE-798
 Use of Hard-coded Credentials
CVE-2016-6535 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268096 6.5 MEDIUM
Network
cisco fog_director Cisco Fog Director 1.0(0) for IOx allows remote authenticated users to bypass intended access restrictions and write to arbitrary files via the Cartridge interface, aka Bug ID CSCuz89368. CWE-20
 Improper Input Validation 
CVE-2016-6405 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268097 6.1 MEDIUM
Network
cisco ios Cross-site scripting (XSS) vulnerability in the web framework in Cisco IOx Local Manager in IOS 15.5(2)T and IOS XE allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a… CWE-79
Cross-site Scripting
CVE-2016-6404 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268098 5.9 MEDIUM
Network
cisco ios The Data in Motion (DMo) application in Cisco IOS 15.6(1)T and IOS XE, when the IOx feature set is enabled, allows remote attackers to cause a denial of service via a crafted packet, aka Bug IDs CSCu… CWE-399
 Resource Management Errors
CVE-2016-6403 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268099 7.8 HIGH
Local
cisco unified_computing_system UCS Manager and UCS 6200 Fabric Interconnects in Cisco Unified Computing System (UCS) through 3.0(2d) allow local users to obtain OS root access via crafted CLI input, aka Bug ID CSCuz91263. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6402 2024-11-21 11:56 2016-09-19 Show GitHub Exploit DB Packet Storm
268100 6.1 MEDIUM
Network
emc vipr_srm Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-6643 2024-11-21 11:56 2016-09-18 Show GitHub Exploit DB Packet Storm