Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252841 9.3 危険 マイクロソフト - Microsoft Publisher における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-3410 2011-12-16 11:25 2011-12-13 Show GitHub Exploit DB Packet Storm
252842 9.3 危険 マイクロソフト - Microsoft Publisher 2003 および 2007 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-1508 2011-12-16 11:19 2011-12-13 Show GitHub Exploit DB Packet Storm
252843 9.3 危険 マイクロソフト - Microsoft Windows XP および Windows Server 2003 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-3397 2011-12-16 11:16 2011-12-13 Show GitHub Exploit DB Packet Storm
252844 9.3 危険 マイクロソフト - 複数の Microsoft Office 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-1983 2011-12-16 11:15 2011-12-13 Show GitHub Exploit DB Packet Storm
252845 7.2 危険 マイクロソフト - 複数の Microsoft 製品の簡体字中国語版 Microsoft Office IME における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2010 2011-12-16 11:09 2011-12-13 Show GitHub Exploit DB Packet Storm
252846 4.3 警告 Dolibarr ERP & CRM - Dolibarr におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4814 2011-12-16 10:52 2011-11-3 Show GitHub Exploit DB Packet Storm
252847 6.5 警告 Dolibarr ERP & CRM - Dolibarr における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4802 2011-12-16 10:50 2011-11-3 Show GitHub Exploit DB Packet Storm
252848 4.3 警告 Jextensions - Joomla! 用 HM Community コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4809 2011-12-16 10:44 2011-12-14 Show GitHub Exploit DB Packet Storm
252849 7.5 危険 Jextensions - Joomla! 用 HM Community コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4808 2011-12-16 10:41 2011-12-14 Show GitHub Exploit DB Packet Storm
252850 5 警告 foobla - Joomla! 用の obSuggest コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4804 2011-12-16 10:19 2011-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
264581 5.5 MEDIUM
Local
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 allows web pages to be stored locally which can be read by another user on the system. CWE-200
Information Exposure
CVE-2016-8981 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264582 8.1 HIGH
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to ex… CWE-611
XXE
CVE-2016-8980 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264583 5.9 MEDIUM
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerab… CWE-200
Information Exposure
CVE-2016-8966 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264584 6.1 MEDIUM
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could… CWE-601
Open Redirect
CVE-2016-8961 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264585 5.4 MEDIUM
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality… CWE-79
Cross-site Scripting
CVE-2016-8943 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264586 3.1 LOW
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center could allow an authenticated user with intimate knowledge of the system to edit a limited set of properties on the server. CWE-284
Improper Access Control
CVE-2016-8942 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264587 8.8 HIGH
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website… CWE-352
 Origin Validation Error
CVE-2016-8941 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264588 6.1 MEDIUM
Network
ibm social_rendering_templates_for_digital_data_connector IBM Social Rendering Templates for Digital Data Connector is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int… CWE-79
Cross-site Scripting
CVE-2016-8936 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264589 5.4 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-8934 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
264590 6.1 MEDIUM
Network
ibm web_content_manager_production_analytics
websphere_portal
Exphox WebRadar is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to… CWE-79
Cross-site Scripting
CVE-2016-8922 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm