Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215251 7.5 危険 PTC Inc. - PTC Creo View 用ブラウザプラグインにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2061 2015-03-11 14:44 2015-02-27 Show GitHub Exploit DB Packet Storm
215252 6.4 警告 Best Practical Solutions - RT におけるセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2015-1464 2015-03-11 14:39 2015-02-26 Show GitHub Exploit DB Packet Storm
215253 5 警告 Best Practical Solutions - RT における重要な RSS フィードの URL およびチケットデータを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1165 2015-03-11 14:38 2015-02-26 Show GitHub Exploit DB Packet Storm
215254 7.1 危険 Best Practical Solutions - RT の電子メールゲートウェイにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-9472 2015-03-11 14:38 2015-02-26 Show GitHub Exploit DB Packet Storm
215255 7.5 危険 WEBGATE - WebGate Embedded Standard Protocol SDK におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2097 2015-03-11 14:08 2015-02-23 Show GitHub Exploit DB Packet Storm
215256 6.8 警告 WEBGATE - WebGate eDVR Manager の WESPPTZ.WESPPTZCtrl.1 の ActiveX コントロールの Connect 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-2096 2015-03-11 14:08 2015-02-27 Show GitHub Exploit DB Packet Storm
215257 6.8 警告 WEBGATE - WebGate eDVR Manager の WESPPTZ.WESPPTZCtrl.1 の ActiveX コントロールの SetConnectInfo 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2095 2015-03-11 14:08 2015-02-27 Show GitHub Exploit DB Packet Storm
215258 7.5 危険 WEBGATE - WebGate WinRDS の WESPPlayback.WESPPlaybackCtrl.1 コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2094 2015-03-11 14:08 2015-02-27 Show GitHub Exploit DB Packet Storm
215259 6.8 警告 WEBGATE - WebGate WebEyeAudio の ActiveX コントロールの Connect 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2093 2015-03-11 14:08 2015-02-27 Show GitHub Exploit DB Packet Storm
215260 7.5 危険 The Foreman - Foreman の Smart Proxy における認証を回避される脆弱性 CWE-310
暗号の問題
CVE-2014-3691 2015-03-11 12:07 2014-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295311 - djangoproject django Cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget in contrib/admin/widgets.py in Django 1.5.x before 1.5.2 and 1.6.x before 1.6 beta 2 allows remote attackers to inject arbit… CWE-79
Cross-site Scripting
CVE-2013-4249 2024-11-21 10:55 2013-10-5 Show GitHub Exploit DB Packet Storm
295312 - systemd_project
debian
canonical
systemd
debian_linux
ubuntu_linux
systemd does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race con… CWE-362
Race Condition
CVE-2013-4327 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
295313 - lennart_poettering
redhat
rkit
enterprise_linux
RealtimeKit (aka rtkit) 0.5 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess Po… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4326 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
295314 - spice-gtk_project
redhat
spice-gtk
enterprise_linux
spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API function, which allows local users to bypass intended access restrictions by l… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4324 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
295315 - redhat
canonical
libvirt
ubuntu_linux
enterprise_linux
libvirt 1.0.5.x before 1.0.5.6, 0.10.2.x before 0.10.2.8, and 0.9.12.x before 0.9.12.2 allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4311 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
295316 - opensuse
polkit_project
canonical
redhat
opensuse
polkit
ubuntu_linux
enterprise_linux
Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is perf… CWE-362
Race Condition
CVE-2013-4288 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
295317 - xen xen The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the correct variable for the source effective address, which allows local HVM guests to obtain hypervisor stack information by r… CWE-200
Information Exposure
CVE-2013-4361 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
295318 - xen xen Xen 4.3.x and earlier does not properly handle certain errors, which allows local HVM guests to obtain hypervisor stack memory via a (1) port or (2) memory mapped I/O write or (3) other unspecified o… CWE-200
Information Exposure
CVE-2013-4355 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
295319 - redhat jboss_enterprise_web_platform
jboss_enterprise_brms_platform
jboss_enterprise_soa_platform
jboss_enterprise_application_platform
The org.jboss.remoting.transport.socket.ServerThread class in Red Hat JBoss Remoting for Red Hat JBoss SOA Platform 5.3.1 GA, Web Platform 5.2.0, Enterprise Application Platform 5.2.0, and other prod… NVD-CWE-noinfo
CVE-2013-4210 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
295320 - polarssl polarssl The x509parse_crt function in x509.h in PolarSSL 1.1.x before 1.1.7 and 1.2.x before 1.2.8 does not properly parse certificate messages during the SSL/TLS handshake, which allows remote attackers to … CWE-20
 Improper Input Validation 
CVE-2013-4623 2024-11-21 10:55 2013-10-1 Show GitHub Exploit DB Packet Storm