Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216051 5 警告 Zoho Corporation - ZOHO ManageEngine Netflow Analyzer および IT360 の DisplayChartPDF サーブレットにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5446 2014-12-5 16:36 2014-11-30 Show GitHub Exploit DB Packet Storm
216052 5 警告 Zoho Corporation - ZOHO ManageEngine Netflow Analyzer および IT360 における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5445 2014-12-5 16:35 2014-11-30 Show GitHub Exploit DB Packet Storm
216053 5 警告 D-Link Systems, Inc. - D-link IP カメラ DCS-2103 ファームウェアにおけるインストールパスを取得される脆弱性 CWE-22
パス・トラバーサル
CVE-2014-9238 2014-12-5 15:57 2014-11-16 Show GitHub Exploit DB Packet Storm
216054 7.5 危険 Proticaret - Proticaret E-Commerce における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9237 2014-12-5 15:54 2014-06-26 Show GitHub Exploit DB Packet Storm
216055 4.3 警告 Zoph - Zoph の php/edit_photos.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9236 2014-12-5 14:35 2014-11-18 Show GitHub Exploit DB Packet Storm
216056 9 危険 Zoph - Zoph における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9235 2014-12-5 14:34 2014-11-18 Show GitHub Exploit DB Packet Storm
216057 5 警告 D-Link Systems, Inc. - D-link IP カメラ DCS-2103 ファームウェアの cgi-bin/sddownload.cgi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-9234 2014-12-5 14:16 2014-11-16 Show GitHub Exploit DB Packet Storm
216058 7.5 危険 Huawei - Huawei Honor Cube Wireless Router WS860s における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-9134 2014-12-5 14:05 2014-11-14 Show GitHub Exploit DB Packet Storm
216059 7.5 危険 codezen.org - Canto Curses の canto_curses/guibase.py における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2013-7416 2014-12-5 13:57 2013-12-7 Show GitHub Exploit DB Packet Storm
216060 5 警告 Icecast - Icecast における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-9018 2014-12-5 13:45 2014-11-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296021 - viewvc
debian
viewvc
debian_linux
Cross-site scripting (XSS) vulnerability in the "extra" details in the DiffSource._get_row function in lib/viewvc.py in ViewVC 1.0.x before 1.0.13 and 1.1.x before 1.1.16 allows remote authenticated … CWE-79
Cross-site Scripting
CVE-2012-4533 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296022 - steve_j_baker plib Stack-based buffer overflow in the error function in ssg/ssgParser.cxx in PLIB 1.8.5 allows remote attackers to execute arbitrary code via a crafted 3d model file that triggers a long error message, … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4552 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296023 - djangoproject django The django.http.HttpRequest.get_host function in Django 1.3.x before 1.3.4 and 1.4.x before 1.4.2 allows remote attackers to generate and display arbitrary URLs via crafted username and password Host… CWE-20
 Improper Input Validation 
CVE-2012-4520 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296024 - patterninsight pattern_insight Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows remote attackers to inject arbitrary web script or HTML via crafted characters t… CWE-79
Cross-site Scripting
CVE-2012-4950 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296025 - agilefleet fleetcommander
fleetcommander_kiosk
Agile FleetCommander and FleetCommander Kiosk before 4.08 store database credentials in cleartext, which allows remote attackers to obtain sensitive information via requests to unspecified pages. CWE-310
Cryptographic Issues
CVE-2012-4947 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296026 - agilefleet fleetcommander
fleetcommander_kiosk
Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easier for context-dependent attackers to obtain sensitive information by reading a… CWE-310
Cryptographic Issues
CVE-2012-4946 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296027 - agilefleet fleetcommander
fleetcommander_kiosk
Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary commands via unspecified vectors, related to a "command injection" issue. CWE-20
 Improper Input Validation 
CVE-2012-4945 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296028 - agilefleet fleetcommander
fleetcommander_kiosk
Multiple unrestricted file upload vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary code by uploading a file via an unspecified … NVD-CWE-Other
CVE-2012-4944 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296029 - agilefleet fleetcommander
fleetcommander_kiosk
Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to hijack the authentication of arbitrary users for requ… CWE-352
 Origin Validation Error
CVE-2012-4943 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm
296030 - agilefleet fleetcommander
fleetcommander_kiosk
Multiple cross-site scripting (XSS) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to inject arbitrary web script or HTML via an arbitrary text fi… CWE-79
Cross-site Scripting
CVE-2012-4942 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm