Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251901 4.3 警告 Tomatosoft - TomatoSoft Free Mp3 Player におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-5043 2012-01-5 16:12 2011-12-30 Show GitHub Exploit DB Packet Storm
251902 4.3 警告 gphemsley - SASHA の inc/lib/lib.base.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5042 2012-01-5 16:11 2011-12-30 Show GitHub Exploit DB Packet Storm
251903 4.3 警告 PulseCMS - Pulse Pro CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5041 2012-01-5 16:10 2011-12-30 Show GitHub Exploit DB Packet Storm
251904 4.3 警告 Infoproject - Infoproject Biznis Heroj におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5040 2012-01-5 14:27 2011-12-30 Show GitHub Exploit DB Packet Storm
251905 7.5 危険 Infoproject - Infoproject Biznis Heroj における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5039 2012-01-5 14:26 2011-12-30 Show GitHub Exploit DB Packet Storm
251906 7.5 危険 hitCode - hitCode hitAppoint における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5038 2012-01-5 14:24 2011-12-30 Show GitHub Exploit DB Packet Storm
251907 4.4 警告 ConfigServer - ConfigServer Security & Firewall におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-5033 2012-01-5 14:21 2011-12-10 Show GitHub Exploit DB Packet Storm
251908 4.9 警告 WinMount - WinMount の WMDrive.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-5032 2012-01-5 14:20 2011-12-29 Show GitHub Exploit DB Packet Storm
251909 7.5 危険 Shilpi Computers Limited. - cApexWEB の servlet/capexweb.parentvalidatepassword における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5031 2012-01-5 14:19 2011-12-29 Show GitHub Exploit DB Packet Storm
251910 3.5 注意 valthebald - Drupal 用 Meta tags quick モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5030 2012-01-5 14:18 2011-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265921 8.1 HIGH
Network
huawei s12700_firmware
s5700_firmware
Huawei S12700 switches with software before V200R008C00SPC500 and S5700 switches with software before V200R005SPH010, when the debug switch is enabled, allows remote attackers to cause a denial of se… CWE-20
 Improper Input Validation 
CVE-2016-4087 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265922 7.5 HIGH
Network
quagga
opensuse
quagga
leap
opensuse
The bgp_dump_routes_func function in bgpd/bgp_dump.c in Quagga does not perform size checks when dumping data, which might allow remote attackers to cause a denial of service (assertion failure and d… CWE-20
 Improper Input Validation 
CVE-2016-4049 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265923 6.0 MEDIUM
Local
fedoraproject
canonical
qemu
debian
fedora
ubuntu_linux
qemu
debian_linux
The ehci_advance_state function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular split isochronous tra… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-4037 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265924 8.6 HIGH
Network
qemu
canonical
fedoraproject
debian
qemu
ubuntu_linux
fedora
debian_linux
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cau… CWE-120
Classic Buffer Overflow
CVE-2016-4001 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265925 7.5 HIGH
Network
opensuse
golang
fedoraproject
leap
go
fedora
The Verify function in crypto/dsa/dsa.go in Go before 1.5.4 and 1.6.x before 1.6.1 does not properly check parameters passed to the big integer library, which might allow remote attackers to cause a … CWE-20
 Improper Input Validation 
CVE-2016-3959 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265926 7.8 HIGH
Local
golang go Untrusted search path vulnerability in Go before 1.5.4 and 1.6.x before 1.6.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, related to use … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3958 2024-11-21 11:51 2016-05-24 Show GitHub Exploit DB Packet Storm
265927 9.8 CRITICAL
Network
php
opensuse
php
leap
opensuse
Integer overflow in the str_pad function in ext/standard/string.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a long string,… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4346 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
265928 9.8 CRITICAL
Network
php php Integer overflow in the php_filter_encode_url function in ext/filter/sanitizing_filters.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other i… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4345 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
265929 9.8 CRITICAL
Network
php php Integer overflow in the xml_utf8_encode function in ext/xml/xml.c in PHP before 7.0.4 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a long argumen… CWE-190
 Integer Overflow or Wraparound
CVE-2016-4344 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm
265930 8.8 HIGH
Network
php
opensuse
php
opensuse
The phar_make_dirstream function in ext/phar/dirstream.c in PHP before 5.6.18 and 7.x before 7.0.3 mishandles zero-size ././@LongLink files, which allows remote attackers to cause a denial of service… CWE-824
 Access of Uninitialized Pointer
CVE-2016-4343 2024-11-21 11:51 2016-05-22 Show GitHub Exploit DB Packet Storm