Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251771 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0761 2012-02-16 11:09 2012-02-14 Show GitHub Exploit DB Packet Storm
251772 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0760 2012-02-16 11:06 2012-02-14 Show GitHub Exploit DB Packet Storm
251773 10 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0759 2012-02-16 11:05 2012-02-14 Show GitHub Exploit DB Packet Storm
251774 10 危険 アドビシステムズ - Adobe Shockwave Player におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0758 2012-02-16 11:02 2012-02-14 Show GitHub Exploit DB Packet Storm
251775 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0757 2012-02-16 11:00 2012-02-14 Show GitHub Exploit DB Packet Storm
251776 6.4 警告 富士通 - Fujitsu Interstage Application Server の Interstage 管理コンソールにおける任意のファイル読込/削除の脆弱性 CWE-noinfo
情報不足
CVE-2008-2674 2012-02-15 18:12 2008-06-10 Show GitHub Exploit DB Packet Storm
251777 - - 日本電気
PNG Development Group
フェンリル株式会社
- libpng における sCAL チャンクの処理に脆弱性 - - 2012-02-15 16:45 2011-07-8 Show GitHub Exploit DB Packet Storm
251778 5.8 警告 Netcreators - TYPO3 用 Modern FAQ エクステンションにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2011-5079 2012-02-15 16:04 2012-02-14 Show GitHub Exploit DB Packet Storm
251779 5 警告 The PHP Group - PHP のタイムゾーン機能におけるサービス運用妨害 (メモリ破損) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0789 2012-02-15 16:03 2012-01-10 Show GitHub Exploit DB Packet Storm
251780 5 警告 The PHP Group - PHP の PDORow 実装におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0788 2012-02-15 16:02 2012-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265571 6.1 MEDIUM
Network
moxa oncell_g3100v2_firmware
oncell_g3111_firmware
oncell_g3151_firmware
oncell_g3211_firmware
oncell_g3251_firmware
Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version 1.7 allows a reflected cross-site scripting attack which may allow an attacker… CWE-79
Cross-site Scripting
CVE-2016-5819 2024-11-21 11:55 2019-03-22 Show GitHub Exploit DB Packet Storm
265572 7.5 HIGH
Network
fatek automation_fv_designer
automation_pm_designer_v3
A malicious attacker can trigger a remote buffer overflow in the Communication Server in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-5800 2024-11-21 11:55 2019-03-22 Show GitHub Exploit DB Packet Storm
265573 8.1 HIGH
Network
libexif_project
debian
canonical
libexif
debian_linux
ubuntu_linux
A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can cause Denial-of-Service (DoS) and Information Disclosure (disclosing some criti… - CVE-2016-6328 2024-11-21 11:55 2018-11-1 Show GitHub Exploit DB Packet Storm
265574 5.4 MEDIUM
Network
redhat jboss_bpm_suite JBoss BPM Suite 6 is vulnerable to a reflected XSS via dashbuilder. Remote attackers can entice authenticated users that have privileges to access dashbuilder (usually admins) to click on links to /d… - CVE-2016-6343 2024-11-21 11:55 2018-10-31 Show GitHub Exploit DB Packet Storm
265575 7.5 HIGH
Network
epic mychart XPath injection vulnerability in Epic MyChart allows remote attackers to access contents of an XML document containing static display strings, such as field labels, via the topic parameter to help.as… CWE-91
Blind XPath Injection
CVE-2016-6272 2024-11-21 11:55 2018-02-21 Show GitHub Exploit DB Packet Storm
265576 7.8 HIGH
Local
foxitsoftware foxit_reader
phantompdf
Heap-based buffer overflow in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (memory corruption and application crash) or potentiall… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-6169 2024-11-21 11:55 2018-02-8 Show GitHub Exploit DB Packet Storm
265577 7.8 HIGH
Local
foxitsoftware foxit_reader
phantompdf
Use-after-free vulnerability in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a … CWE-416
 Use After Free
CVE-2016-6168 2024-11-21 11:55 2018-02-8 Show GitHub Exploit DB Packet Storm
265578 6.1 MEDIUM
Network
sophos puremessage Cross-site scripting (XSS) vulnerability in Sophos PureMessage for UNIX before 6.3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-6217 2024-11-21 11:55 2018-01-27 Show GitHub Exploit DB Packet Storm
265579 4.3 MEDIUM
Network
ibm rational_quality_manager
rational_team_concert
rational_doors_next_generation
rational_engineering_lifecycle_manager
rational_rhapsody_design_manager
rational_software_architect_design…
IBM Jazz technology based products might divulge information that might be useful in helping attackers through error messages. IBM X-Force ID: 116868. CWE-200
Information Exposure
CVE-2016-6024 2024-11-21 11:55 2017-11-28 Show GitHub Exploit DB Packet Storm
265580 9.8 CRITICAL
Network
jantek jtc-200_firmware An Improper Authentication issue was discovered in JanTek JTC-200, all versions. The improper authentication could provide an undocumented BusyBox Linux shell accessible over the TELNET service witho… CWE-287
Improper Authentication
CVE-2016-5791 2024-11-21 11:55 2017-10-13 Show GitHub Exploit DB Packet Storm