Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215791 7.5 危険 シスコシステムズ - Cisco OpenH264 の decode_slice.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-8002 2014-11-27 15:20 2014-11-24 Show GitHub Exploit DB Packet Storm
215792 7.5 危険 シスコシステムズ - Cisco OpenH264 の decode.cpp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-8001 2014-11-27 15:20 2014-11-24 Show GitHub Exploit DB Packet Storm
215793 5 警告 Openswan - Openswan におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2037 2014-11-27 15:19 2014-02-21 Show GitHub Exploit DB Packet Storm
215794 5 警告 シーメンス - 複数のシーメンス製品における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-8552 2014-11-27 15:12 2014-11-21 Show GitHub Exploit DB Packet Storm
215795 10 危険 シーメンス - 複数のシーメンス製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8551 2014-11-27 15:12 2014-11-21 Show GitHub Exploit DB Packet Storm
215796 7.8 危険 Zoho Corporation - ManageEngine OpUtils の ConfigSaveServlet サーブレットにおけるファイルを公開される脆弱性 CWE-200
情報漏えい
CVE-2014-8678 2014-11-27 14:58 2014-11-21 Show GitHub Exploit DB Packet Storm
215797 5 警告 シスコシステムズ - Network Convergence System 6000 デバイス上で稼働する Cisco IOS XR の lighttpd モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-8005 2014-11-27 14:53 2014-11-25 Show GitHub Exploit DB Packet Storm
215798 6.5 警告 Jexperts - JExperts Channel Platform におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8558 2014-11-27 14:46 2014-10-27 Show GitHub Exploit DB Packet Storm
215799 4.3 警告 IBM - IBM Web Experience Factory におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6196 2014-11-27 14:45 2014-11-12 Show GitHub Exploit DB Packet Storm
215800 3.5 注意 IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6093 2014-11-27 14:45 2014-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293971 - morequick greenbrowser Multiple cross-site scripting (XSS) vulnerabilities in GreenBrowser 6.1.0117 and 6.1.0216 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in an about: page or (2) the la… CWE-79
Cross-site Scripting
CVE-2012-5906 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293972 - elif_keir knftpd Buffer overflow in KnFTPd 1.0.0 allows remote authenticated users to cause a denial of service (crash) via a long string in a FEAT command. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5905 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293973 - irfanview irfanview Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE compressed bitmap file such as a DIB, RLE, or BMP image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5904 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293974 - simple_machines smf Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the scheduled parameter to index.php. CWE-79
Cross-site Scripting
CVE-2012-5903 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293975 - dflabs ptk Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to inject arbitrary web script or HTML via the arg4 parameter. CWE-79
Cross-site Scripting
CVE-2012-5902 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293976 - dflabs ptk DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read logs, images, or reports via a direct req… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5901 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293977 - samedia landshop Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) OB_ID parameter in a single action to admin/action/objects.php, (… CWE-89
SQL Injection
CVE-2012-5900 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293978 - samedia landshop Cross-site scripting (XSS) vulnerability in admin/action/objects.php in SAMEDIA LandShop 0.9.2 allows remote attackers to inject arbitrary web script or HTML via the OTR_HEADS[] parameter in an edit … CWE-79
Cross-site Scripting
CVE-2012-5899 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293979 - samedia landshop Cross-site request forgery (CSRF) vulnerability in SAMEDIA LandShop 0.9.2 allows remote attackers to hijack the authentication of administrators for requests that change account settings. CWE-352
 Origin Validation Error
CVE-2012-5898 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293980 - quest intrust The (1) SimpleTree and (2) ReportTree classes in the ARDoc ActiveX control (ARDoc.dll) in Quest InTrust 10.4.0.853 and earlier do not properly implement the SaveToFile method, which allows remote att… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5897 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm