Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209541 5.4 警告 Magzter Inc. - Android 用 Youth Incorporated アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7423 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209542 5.4 警告 homerelectric - Android 用 HEA Mobile アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7422 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209543 5.4 警告 mytoursapp - Android 用 Revel in the Rideau Lakes アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7421 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209544 5.4 警告 Magzter Inc. - Android 用 Just Bureaucracy アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7420 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209545 5.4 警告 pokecreator - Android 用 PokeCreator Lite アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7419 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209546 5.4 警告 Magzter Inc. - Android 用 BBC Knowledge Magazine アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7418 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209547 5.4 警告 realacademiabellasartessanfernando - Android 用 Real Academia de Bellas Artes アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7417 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209548 5.4 警告 pocketmags - Android 用 Craft Stamper Magazine アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7416 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209549 5.4 警告 nobexrc - Android 用 Asylum! アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7415 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209550 5.4 警告 Magzter Inc. - Android 用 CLEO Malaysia アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7414 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 27, 2026, 1:20 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293061 - axis m10_series_network_cameras_firmware
m1054_network_camera
Cross-site scripting (XSS) vulnerability in serverreport.cgi in Axis M10 Series Network Cameras M1054 firmware 5.21 and earlier allows remote attackers to inject arbitrary web script or HTML via the … CWE-79
Cross-site Scripting
CVE-2011-5261 2024-11-21 10:34 2013-02-13 Show GitHub Exploit DB Packet Storm
293062 - sap netweaver Cross-site scripting (XSS) vulnerability in SAP/BW/DOC/METADATA in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via the page parameter. CWE-79
Cross-site Scripting
CVE-2011-5260 2024-11-21 10:34 2013-02-13 Show GitHub Exploit DB Packet Storm
293063 - orangehrm orangehrm SQL injection vulnerability in lib/controllers/CentralController.php in OrangeHRM before 2.6.11.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2011-5259 2024-11-21 10:34 2013-02-13 Show GitHub Exploit DB Packet Storm
293064 - orangehrm orangehrm Multiple cross-site scripting (XSS) vulnerabilities in OrangeHRM before 2.6.11.2 allow remote attackers to inject arbitrary web script or HTML via the (1) uniqcode or (2) isAdmin parameter to index.p… CWE-79
Cross-site Scripting
CVE-2011-5258 2024-11-21 10:34 2013-02-13 Show GitHub Exploit DB Packet Storm
293065 - redhat jboss_enterprise_application_platform
jboss_enterprise_web_platform
jboss_enterprise_brms_platform
The NonManagedConnectionFactory in JBoss Enterprise Application Platform (EAP) 5.1.2 and 5.2.0, Web Platform (EWP) 5.1.2 and 5.2.0, and BRMS Platform before 5.3.1 logs the username and password in cl… CWE-255
Credentials Management
CVE-2012-0034 2024-11-21 10:34 2013-02-6 Show GitHub Exploit DB Packet Storm
293066 - ibm infosphere_information_server
infosphere_metadata_workbench
InfoSphere Metadata Workbench (MWB) 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 does not properly restrict use of the troubleshooting feature, which allows remot… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0205 2024-11-21 10:34 2013-01-31 Show GitHub Exploit DB Packet Storm
293067 - ibm infosphere_import_export_manager
infosphere_information_server
infosphere_information_server_metabrokers_\&_bridges
Untrusted search path vulnerability in InfoSphere Import Export Manager 8.1 through 9.1 in InfoSphere Information Server MetaBrokers & Bridges (MBB) in IBM InfoSphere Information Server 8.1, 8.5 befo… NVD-CWE-Other
CVE-2012-0204 2024-11-21 10:34 2013-01-31 Show GitHub Exploit DB Packet Storm
293068 - ibm infosphere_information_server
infosphere_metadata_workbench
Cross-site scripting (XSS) vulnerability in InfoSphere Metadata Workbench (MWB) 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 allows remote attackers to inject arb… CWE-79
Cross-site Scripting
CVE-2012-0203 2024-11-21 10:34 2013-01-31 Show GitHub Exploit DB Packet Storm
293069 - suse webyast SUSE WebYaST before 1.2 0.2.63-0.6.1 allows remote attackers to modify the hosts list, and subsequently conduct man-in-the-middle attacks, via a crafted /host request on TCP port 4984. NVD-CWE-noinfo
CVE-2012-0435 2024-11-21 10:34 2013-01-27 Show GitHub Exploit DB Packet Storm
293070 - microfocus edirectory Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0432 2024-11-21 10:34 2012-12-25 Show GitHub Exploit DB Packet Storm