Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256941 3.2 注意 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3413 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
256942 3.6 注意 オラクル - Oracle Database の RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3410 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256943 4 警告 オラクル - Oracle Database の Logical Standby コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1996 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256944 4.9 警告 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3414 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256945 4.9 警告 オラクル - Oracle Database の Oracle Data Pump コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3411 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256946 6 警告 オラクル - Oracle Database の Application Express Application Builder コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0076 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
256947 9 危険 オラクル - Oracle Database の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3415 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
256948 10 危険 オラクル - Oracle Database の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0071 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
256949 5 警告 Pidgin
Adium
レッドハット
- Pidgin および Adium の MSN プロトコルプラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0013 2010-02-10 13:39 2010-01-8 Show GitHub Exploit DB Packet Storm
256950 10 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat の U3D 実装における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2009-3959 2010-02-10 13:39 2010-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267361 2.7 LOW
Network
ibm qradar_security_information_and_event_manager IBM Security QRadar SIEM 7.2.x before 7.2.7 allows remote authenticated administrators to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity ref… NVD-CWE-Other
CVE-2016-2868 2024-11-21 11:48 2016-07-2 Show GitHub Exploit DB Packet Storm
267362 7.0 HIGH
Local
ibm streams
infosphere_streams
IBM InfoSphere Streams before 4.0.1.2 and IBM Streams before 4.1.1.1 do not properly implement the runAsUser feature, which allows local users to obtain root group privileges via unspecified vectors. CWE-254
 7PK - Security Features
CVE-2016-2867 2024-11-21 11:48 2016-07-2 Show GitHub Exploit DB Packet Storm
267363 3.7 LOW
Network
ibm websphere_extreme_scale IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3, 7.1.1 before 7.1.1.1, 8.5 before 8.5.0.3, and 8.6 before 8.6.0.8 does not properly encrypt data, which makes it easier for remote attackers to obtain… CWE-200
Information Exposure
CVE-2016-2861 2024-11-21 11:48 2016-07-2 Show GitHub Exploit DB Packet Storm
267364 7.8 HIGH
Local
symantec mail_security_for_microsoft_exchange
norton_power_eraser
protection_engine
endpoint_protection
message_gateway
norton_360
norton_antivirus
norton_internet_security
norton_secu…
The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SE… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2211 2024-11-21 11:48 2016-07-1 Show GitHub Exploit DB Packet Storm
267365 7.3 HIGH
Local
symantec mail_security_for_microsoft_exchange
norton_power_eraser
protection_engine
endpoint_protection
message_gateway
norton_360
norton_antivirus
norton_internet_security
norton_secu…
Buffer overflow in Dec2LHA.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2210 2024-11-21 11:48 2016-07-1 Show GitHub Exploit DB Packet Storm
267366 7.3 HIGH
Local
symantec mail_security_for_microsoft_exchange
norton_power_eraser
protection_engine
endpoint_protection
message_gateway
norton_360
norton_antivirus
norton_internet_security
norton_secu…
Buffer overflow in Dec2SS.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway;… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2209 2024-11-21 11:48 2016-07-1 Show GitHub Exploit DB Packet Storm
267367 8.4 HIGH
Local
symantec mail_security_for_microsoft_exchange
norton_power_eraser
protection_engine
endpoint_protection
message_gateway
norton_360
norton_antivirus
norton_internet_security
norton_secu…
The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Symantec Web Gateway; Symantec Endpoint Protection (SE… CWE-20
 Improper Input Validation 
CVE-2016-2207 2024-11-21 11:48 2016-07-1 Show GitHub Exploit DB Packet Storm
267368 7.5 HIGH
Network
fonality hud_web
fonality
The Chrome HUDweb plugin before 2016-05-05 for Fonality (previously trixbox Pro) 12.6 through 14.1i uses the same hardcoded private key across different customers' installations, which allows remote … CWE-310
NVD-CWE-Other
Cryptographic Issues
CVE-2016-2364 2024-11-21 11:48 2016-06-20 Show GitHub Exploit DB Packet Storm
267369 7.8 HIGH
Local
fonality fonality Fonality (previously trixbox Pro) 12.6 through 14.1i before 2016-06-01 uses weak permissions for the /var/www/rpc/surun script, which allows local users to obtain root access for unspecified command … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2363 2024-11-21 11:48 2016-06-20 Show GitHub Exploit DB Packet Storm
267370 9.8 CRITICAL
Network
fonality fonality Fonality (previously trixbox Pro) 12.6 through 14.1i before 2016-06-01 has a hardcoded password for the FTP account, which allows remote attackers to obtain access via a (1) FTP or (2) SSH connection. NVD-CWE-Other
CVE-2016-2362 2024-11-21 11:48 2016-06-20 Show GitHub Exploit DB Packet Storm