Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209461 7.5 危険 Novell
Carnegie Mellon University (Project Cyrus)
- Cyrus IMAP の imap/index.c の index_urlfetch 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-8077 2015-12-7 17:05 2015-10-26 Show GitHub Exploit DB Packet Storm
209462 7.5 危険 Novell
Carnegie Mellon University (Project Cyrus)
- Cyrus IMAP の index.c の index_urlfetch 関数における重要な情報を取得される脆弱性 CWE-119
CWE-200
CVE-2015-8076 2015-12-7 17:05 2015-09-24 Show GitHub Exploit DB Packet Storm
209463 7.5 危険 Debian
Canonical
- Debian dpkg の dpkg-deb コンポーネント内の dpkg-deb/extract.c における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2015-0860 2015-12-7 16:17 2015-11-26 Show GitHub Exploit DB Packet Storm
209464 7.5 危険 Debian - Debian wheezy および jessie の smokeping パッケージ用のビルドプロシージャにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-0859 2015-12-7 16:17 2015-11-25 Show GitHub Exploit DB Packet Storm
209465 4.3 警告 シスコシステムズ - Cisco Unity Connection の管理インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6390 2015-12-4 11:20 2015-12-2 Show GitHub Exploit DB Packet Storm
209466 7.2 危険 シスコシステムズ - Cisco ASR 1000 デバイス上で稼動する Cisco IOS XE におけるライセンス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6383 2015-12-4 11:19 2015-11-30 Show GitHub Exploit DB Packet Storm
209467 9.3 危険 マカフィー - McAfee SIEM 製品における認証を回避される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2015-8024 2015-12-4 10:18 2015-10-19 Show GitHub Exploit DB Packet Storm
209468 7.5 危険 pcre.org - PCRE におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8395 2015-12-3 16:35 2015-11-23 Show GitHub Exploit DB Packet Storm
209469 7.5 危険 pcre.org - PCRE におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2015-8394 2015-12-3 16:35 2015-11-23 Show GitHub Exploit DB Packet Storm
209470 5 警告 pcre.org - PCRE の pcregrep における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8393 2015-12-3 16:35 2015-11-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297501 - linux linux_kernel The clone_mnt function in fs/namespace.c in the Linux kernel before 3.8.6 does not properly restrict changes to the MNT_READONLY flag, which allows local users to bypass an intended read-only propert… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1957 2024-11-21 10:50 2013-04-25 Show GitHub Exploit DB Packet Storm
297502 - linux linux_kernel The create_user_ns function in kernel/user_namespace.c in the Linux kernel before 3.8.6 does not check whether a chroot directory exists that differs from the namespace root directory, which allows l… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1956 2024-11-21 10:50 2013-04-25 Show GitHub Exploit DB Packet Storm
297503 - chatelao php_address_book Cross-site scripting (XSS) vulnerability in edit.php in PHP Address Book 8.2.5 allows user-assisted remote attackers to inject arbitrary web script or HTML via the Address field. CWE-79
Cross-site Scripting
CVE-2013-1749 2024-11-21 10:50 2013-04-18 Show GitHub Exploit DB Packet Storm
297504 - chatelao php_address_book Multiple SQL injection vulnerabilities in PHP Address Book 8.2.5 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) edit.php or (2) import.php. NOTE: the view… CWE-89
SQL Injection
CVE-2013-1748 2024-11-21 10:50 2013-04-18 Show GitHub Exploit DB Packet Storm
297505 6.1 MEDIUM
Network
phpmyadmin phpmyadmin Multiple cross-site scripting (XSS) vulnerabilities in tbl_gis_visualization.php in phpMyAdmin 3.5.x before 3.5.8 might allow remote attackers to inject arbitrary web script or HTML via the (1) visua… CWE-79
Cross-site Scripting
CVE-2013-1937 2024-11-21 10:50 2013-04-16 Show GitHub Exploit DB Packet Storm
297506 - xen xen Xen 4.2.x, 4.1.x, and earlier, when the hypervisor is running "under memory pressure" and the Xen Security Module (XSM) is enabled, uses the wrong ordering of operations when extending the per-domain… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1920 2024-11-21 10:50 2013-04-13 Show GitHub Exploit DB Packet Storm
297507 - haproxy haproxy Buffer overflow in HAProxy 1.4 through 1.4.22 and 1.5-dev through 1.5-dev17, when HTTP keep-alive is enabled, using HTTP keywords in TCP inspection rules, and running with rewrite rules that appends … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1912 2024-11-21 10:50 2013-04-11 Show GitHub Exploit DB Packet Storm
297508 - redhat packstack
openstack_folsom
openstack_essex
PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed … CWE-255
Credentials Management
CVE-2013-1815 2024-11-21 10:50 2013-04-11 Show GitHub Exploit DB Packet Storm
297509 - ruby-lang ruby lib/rexml/text.rb in the REXML parser in Ruby before 1.9.3-p392 allows remote attackers to cause a denial of service (memory consumption and crash) via crafted text nodes in an XML document, aka an X… CWE-20
 Improper Input Validation 
CVE-2013-1821 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
297510 - digineo thumbshooter lib/thumbshooter.rb in the Thumbshooter 0.1.5 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a URL. CWE-94
Code Injection
CVE-2013-1898 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm