Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216021 4.3 警告 Doug Bierer - Simple Email Form におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8539 2014-11-25 17:15 2014-11-19 Show GitHub Exploit DB Packet Storm
216022 4.3 警告 Moxi9 - Moxi9 PHPFox の AdminCP の Guests/Boots におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8469 2014-11-25 16:54 2014-10-23 Show GitHub Exploit DB Packet Storm
216023 6.5 警告 Open-Xchange - Open-Xchange AppSuite における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7871 2014-11-25 16:47 2014-10-8 Show GitHub Exploit DB Packet Storm
216024 6.5 警告 Dolibarr ERP & CRM - Dolibarr ERP/CRM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7137 2014-11-25 16:39 2014-10-4 Show GitHub Exploit DB Packet Storm
216025 6.8 警告 Huawei - 複数の Huawei 製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5395 2014-11-25 16:18 2014-08-6 Show GitHub Exploit DB Packet Storm
216026 6.8 警告 オラクル - Oracle Database Server の JPublisher コンポーネントにおける機密性に影響のある脆弱性 CWE-200
情報漏えい
CVE-2014-6477 2014-11-25 15:56 2014-11-6 Show GitHub Exploit DB Packet Storm
216027 5 警告 Wireshark - Wireshark の TN5250 ディセクタの epan/dissectors/packet-tn5250.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-8714 2014-11-25 15:50 2014-11-12 Show GitHub Exploit DB Packet Storm
216028 5 警告 Wireshark - Wireshark の NCP ディセクタの epan/dissectors/packet-ncp2222.inc におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-8713 2014-11-25 15:49 2014-11-12 Show GitHub Exploit DB Packet Storm
216029 5 警告 Wireshark - Wireshark の NCP ディセクタの epan/dissectors/packet-ncp2222.inc におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-8712 2014-11-25 15:49 2014-11-12 Show GitHub Exploit DB Packet Storm
216030 5 警告 Wireshark - Wireshark の AMQP ディセクタの epan/dissectors/packet-amqp.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-8711 2014-11-25 15:48 2014-11-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295601 - sonicwall scrutinizer Multiple cross-site scripting (XSS) vulnerabilities in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 allow remote attackers to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2012-3848 2024-11-21 10:41 2012-07-31 Show GitHub Exploit DB Packet Storm
295602 - airdroid airdroid The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism by modifying a pass value within JSON data. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3888 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295603 - airdroid airdroid AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmission" feature, which allows remote attackers to obtain sensitive information by… CWE-310
Cryptographic Issues
CVE-2012-3887 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295604 - airdroid airdroid AirDroid 1.0.4 beta uses the MD5 algorithm for values in the checklogin key parameter and 7bb cookie, which makes it easier for remote attackers to obtain cleartext data by sniffing the local wireles… CWE-200
Information Exposure
CVE-2012-3886 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295605 - airdroid airdroid The default configuration of AirDroid 1.0.4 beta uses a four-character alphanumeric password, which makes it easier for remote attackers to obtain access via a brute-force attack. CWE-287
Improper Authentication
CVE-2012-3885 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295606 - airdroid airdroid AirDroid 1.0.4 beta implements authentication through direct transmission of a password hash over HTTP, which makes it easier for remote attackers to obtain access by sniffing the local wireless netw… CWE-287
Improper Authentication
CVE-2012-3884 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295607 - apple xcode Apple Xcode before 4.4 does not properly compose a designated requirement (DR) during signing of programs that lack bundle identifiers, which allows remote attackers to read keychain entries via a cr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3698 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
295608 - apple safari WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a differen… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3686 2024-11-21 10:41 2012-07-26 Show GitHub Exploit DB Packet Storm
295609 - apple safari WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a differen… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3683 2024-11-21 10:41 2012-07-26 Show GitHub Exploit DB Packet Storm
295610 - apple safari WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a differen… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3682 2024-11-21 10:41 2012-07-26 Show GitHub Exploit DB Packet Storm