Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215351 6.5 警告 マカフィー - McAfee Data Loss Prevention Endpoint の ePO エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1616 2015-02-23 10:05 2015-01-20 Show GitHub Exploit DB Packet Storm
215352 4.3 警告 Jose Pardilla - WordPress 用 FancyBox プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1494 2015-02-23 09:54 2015-02-4 Show GitHub Exploit DB Packet Storm
215353 4.4 警告 シーメンス - Siemens SIMATIC STEP 7 における任意の認証データを確定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-1356 2015-02-20 16:08 2015-02-13 Show GitHub Exploit DB Packet Storm
215354 2.1 注意 シーメンス - Siemens SIMATIC STEP 7 における平文パスワードを特定される脆弱性 CWE-310
暗号の問題
CVE-2015-1355 2015-02-20 16:08 2015-02-13 Show GitHub Exploit DB Packet Storm
215355 8.3 危険 LG Electronics - LG On-Screen Phone における認証を回避される脆弱性 CWE-Other
その他
CVE-2014-8757 2015-02-20 15:22 2014-10-13 Show GitHub Exploit DB Packet Storm
215356 5.8 警告 MantisBT Group - MantisBT の core/string_api.php の string_sanitize_url 関数におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2015-1042 2015-02-19 21:23 2015-01-16 Show GitHub Exploit DB Packet Storm
215357 6.3 警告 シスコシステムズ - Cisco Adaptive Security Appliance Software の WebVPN サブシステムの Proxy Bypass Content Rewriter 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-5557 2015-02-19 21:05 2013-08-22 Show GitHub Exploit DB Packet Storm
215358 4.6 警告 シスコシステムズ - Cisco Unified IP 9900 phones のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-0601 2015-02-19 21:05 2015-02-4 Show GitHub Exploit DB Packet Storm
215359 4.6 警告 シスコシステムズ - Cisco Unified IP 9900 phones のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0603 2015-02-19 21:04 2015-02-4 Show GitHub Exploit DB Packet Storm
215360 5 警告 シスコシステムズ - Cisco Unified IP 9900 phones のファームウェアの Web フレームワークにおけるファイルをアップロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2015-0604 2015-02-19 21:04 2015-02-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295411 - microsoft windows_xp
windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_7
windows_rt_8.1
windows_vista
windows_8
windows_server_2003
Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows R… CWE-20
 Improper Input Validation 
CVE-2013-3869 2024-11-21 10:54 2013-11-13 Show GitHub Exploit DB Packet Storm
295412 - ibm lotus_sametime The Enterprise Meeting Server in IBM Lotus Sametime 8.5.2 and 8.5.2.1 does not properly restrict application cookies, which allows remote attackers to read session variables by leveraging a weak sett… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3985 2024-11-21 10:54 2013-11-9 Show GitHub Exploit DB Packet Storm
295413 - ibm lotus_sametime IBM Lotus Sametime 8.5.2 and 8.5.2.1 allows remote attackers to cause a denial of service (WebPlayer Firefox extension crash) via a crafted Audio Visual (AV) session. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-3986 2024-11-21 10:54 2013-11-9 Show GitHub Exploit DB Packet Storm
295414 - ibm lotus_domino Cross-site scripting (XSS) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified… CWE-79
Cross-site Scripting
CVE-2013-4055 2024-11-21 10:54 2013-11-8 Show GitHub Exploit DB Packet Storm
295415 - ibm lotus_domino Cross-site scripting (XSS) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified… CWE-79
Cross-site Scripting
CVE-2013-4051 2024-11-21 10:54 2013-11-8 Show GitHub Exploit DB Packet Storm
295416 - ibm lotus_domino Cross-site request forgery (CSRF) vulnerability in webadmin.nsf in Domino Web Administrator in IBM Domino 8.5 and 9.0 allows remote authenticated users to hijack the authentication of unspecified vic… CWE-352
 Origin Validation Error
CVE-2013-4050 2024-11-21 10:54 2013-11-8 Show GitHub Exploit DB Packet Storm
295417 - attachmate verastream_host_integrator Directory traversal vulnerability in the Session Server in Attachmate Verastream Host Integrator (VHI) 6.0 through 7.5 SP 1 HF 1 allows remote attackers to upload and execute arbitrary files via a cr… CWE-22
Path Traversal
CVE-2013-3626 2024-11-21 10:54 2013-11-7 Show GitHub Exploit DB Packet Storm
295418 - openafs
debian
openafs
debian_linux
The vos command in OpenAFS 1.6.x before 1.6.5, when using the -encrypt option, only enables integrity protection and sends data in cleartext, which allows remote attackers to obtain sensitive informa… CWE-310
Cryptographic Issues
CVE-2013-4135 2024-11-21 10:54 2013-11-6 Show GitHub Exploit DB Packet Storm
295419 - openafs
debian
openafs
debian_linux
OpenAFS before 1.4.15, 1.6.x before 1.6.5, and 1.7.x before 1.7.26 uses weak encryption (DES) for Kerberos keys, which makes it easier for remote attackers to obtain the service key. CWE-310
Cryptographic Issues
CVE-2013-4134 2024-11-21 10:54 2013-11-6 Show GitHub Exploit DB Packet Storm
295420 - nas4free nas4free NAS4Free 9.1.0.1.804 and earlier allows remote authenticated users to execute arbitrary PHP code via a request to exec.php, aka the "Advanced | Execute Command" feature. NOTE: this issue might not b… CWE-94
Code Injection
CVE-2013-3631 2024-11-21 10:54 2013-11-3 Show GitHub Exploit DB Packet Storm