Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253011 6.8 警告 The PHP Group - PHP の set_magic_quotes_runtime 関数における SQL インジェクション攻撃を誘導される脆弱性 CWE-89
SQLインジェクション
CVE-2010-4700 2011-02-18 14:42 2010-07-1 Show GitHub Exploit DB Packet Storm
253012 7.5 危険 The PHP Group - PHP の iconv_mime_decode_headers 関数におけるスパムの検出を回避される脆弱性 CWE-189
数値処理の問題
CVE-2010-4699 2011-02-18 14:40 2010-09-28 Show GitHub Exploit DB Packet Storm
253013 5 警告 The PHP Group - PHP の GD 拡張モジュールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4698 2011-02-18 14:38 2010-12-7 Show GitHub Exploit DB Packet Storm
253014 6.8 警告 The PHP Group - PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4697 2011-02-18 14:35 2010-09-18 Show GitHub Exploit DB Packet Storm
253015 1 注意 サン・マイクロシステムズ - Oracle Sun Java System Portal Server のプロキシにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4431 2011-02-18 14:30 2011-01-18 Show GitHub Exploit DB Packet Storm
253016 3.6 注意 オラクル - Oracle Solaris 9 の XScreenSaver における脆弱性 CWE-noinfo
情報不足
CVE-2010-3586 2011-02-18 14:28 2011-01-18 Show GitHub Exploit DB Packet Storm
253017 3.6 注意 オラクル - Oracle Solaris 10 の Fault Manager Daemon における脆弱性 CWE-noinfo
情報不足
CVE-2010-4460 2011-02-18 14:11 2011-01-18 Show GitHub Exploit DB Packet Storm
253018 4.1 警告 オラクル - Oracle Solaris 11 Express の ZFS における脆弱性 CWE-noinfo
情報不足
CVE-2010-4458 2011-02-18 14:08 2011-01-18 Show GitHub Exploit DB Packet Storm
253019 4.1 警告 オラクル - Oracle Solaris の libc における脆弱性 CWE-noinfo
情報不足
CVE-2010-4415 2011-02-18 14:06 2011-01-18 Show GitHub Exploit DB Packet Storm
253020 4.3 警告 サン・マイクロシステムズ - Oracle Sun Java System Communications Express の Web メールにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4456 2011-02-18 14:03 2011-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265571 6.5 MEDIUM
Network
gnu
debian
cpio
debian_linux
The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2037 2024-11-21 11:47 2016-02-23 Show GitHub Exploit DB Packet Storm
265572 5.4 MEDIUM
Network
phpmyadmin
fedoraproject
phpmyadmin
fedora
Cross-site scripting (XSS) vulnerability in the SQL editor in phpMyAdmin 4.5.x before 4.5.4 allows remote authenticated users to inject arbitrary web script or HTML via a SQL query that triggers JSON… CWE-79
Cross-site Scripting
CVE-2016-2045 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265573 5.3 MEDIUM
Network
fedoraproject
phpmyadmin
fedora
phpmyadmin
libraries/sql-parser/autoload.php in the SQL parser in phpMyAdmin 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request, which reveals the full path in an e… CWE-200
Information Exposure
CVE-2016-2044 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265574 5.4 MEDIUM
Network
fedoraproject
opensuse
phpmyadmin
fedora
leap
opensuse
phpmyadmin
Cross-site scripting (XSS) vulnerability in the goToFinish1NF function in js/normalization.js in phpMyAdmin 4.4.x before 4.4.15.3 and 4.5.x before 4.5.4 allows remote authenticated users to inject ar… CWE-79
Cross-site Scripting
CVE-2016-2043 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265575 5.3 MEDIUM
Network
opensuse
fedoraproject
phpmyadmin
leap
opensuse
fedora
phpmyadmin
phpMyAdmin 4.4.x before 4.4.15.3 and 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request to (1) libraries/phpseclib/Crypt/AES.php or (2) libraries/phpsecl… CWE-200
Information Exposure
CVE-2016-2042 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265576 7.5 HIGH
Network
fedoraproject
phpmyadmin
opensuse
fedora
phpmyadmin
leap
opensuse
libraries/common.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not use a constant-time algorithm for comparing CSRF tokens, which makes it easier fo… CWE-254
 7PK - Security Features
CVE-2016-2041 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265577 5.4 MEDIUM
Network
fedoraproject
opensuse
phpmyadmin
fedora
leap
opensuse
phpmyadmin
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allow remote authenticated users to inject arbitrary web script… CWE-79
Cross-site Scripting
CVE-2016-2040 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265578 5.3 MEDIUM
Network
opensuse
phpmyadmin
fedoraproject
leap
opensuse
phpmyadmin
fedora
libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass int… CWE-200
Information Exposure
CVE-2016-2039 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265579 5.3 MEDIUM
Network
phpmyadmin
fedoraproject
opensuse
phpmyadmin
fedora
leap
opensuse
phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request, which reveals the full path in an error… CWE-200
Information Exposure
CVE-2016-2038 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
265580 7.5 HIGH
Network
phpmyadmin phpmyadmin The suggestPassword function in js/functions.js in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 relies on the Math.random JavaScript function, which makes it easie… CWE-255
CWE-254
Credentials Management
 7PK - Security Features
CVE-2016-1927 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm