Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216081 4.3 警告 Meinberg Funkuhren GmbH & Co KG - LANTIME M-Series デバイス上で稼働する Meinberg NTP サーバファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5417 2014-11-7 15:35 2014-10-2 Show GitHub Exploit DB Packet Storm
216082 4.3 警告 Nordex - Nordex Control 2 SCADA デバイス上で稼働する Wind Farm Portal のログインスクリプトにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5408 2014-11-7 15:34 2014-10-30 Show GitHub Exploit DB Packet Storm
216083 6.5 警告 AITpro - WordPress 用 BulletProof Security プラグインの admin/htaccess/bpsunlock.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7959 2014-11-7 15:28 2014-11-5 Show GitHub Exploit DB Packet Storm
216084 4.3 警告 AITpro - WordPress 用 BulletProof Security プラグインの admin/htaccess/bpsunlock.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7958 2014-11-7 15:27 2014-11-5 Show GitHub Exploit DB Packet Storm
216085 4.3 警告 Wordfence.com - WordPress 用 Wordfence Security プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4664 2014-11-7 15:27 2014-06-30 Show GitHub Exploit DB Packet Storm
216086 3.5 注意 Compfight - WordPress 用 Compfight プラグインの compfight-search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8622 2014-11-7 15:27 2014-07-3 Show GitHub Exploit DB Packet Storm
216087 7.5 危険 CA Technologies - CA Cloud Service Management における任意のファイルを読まれる脆弱性 CWE-nocwe
CWE以外
CVE-2014-8474 2014-11-7 15:22 2014-11-3 Show GitHub Exploit DB Packet Storm
216088 6.8 警告 CA Technologies - CA Cloud Service Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-8473 2014-11-7 15:21 2014-11-3 Show GitHub Exploit DB Packet Storm
216089 6.8 警告 CA Technologies - CA Cloud Service Management におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-8472 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
216090 4.3 警告 CA Technologies - CA Cloud Service Management における反射攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-8471 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293311 - microsoft .net_framework Buffer overflow in the Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4, and 4.5 allows remote attackers to execute arbitrary code … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0002 2024-11-21 10:46 2013-01-10 Show GitHub Exploit DB Packet Storm
293312 - microsoft .net_framework The Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 4, and 4.5 does not properly initialize memory arrays, which allows remote attackers to obta… CWE-200
Information Exposure
CVE-2013-0001 2024-11-21 10:46 2013-01-10 Show GitHub Exploit DB Packet Storm
293313 - maxtom atomymaxsite Unrestricted file upload vulnerability in index.php in Atomymaxsite 2.5 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing … NVD-CWE-Other
CVE-2012-6498 2024-11-21 10:46 2013-01-9 Show GitHub Exploit DB Packet Storm
293314 - centrify centrify_deployment_manager
centrify_suite
Centrify Deployment Manager 2.1.0.283, as distributed in Centrify Suite before 2012.5, allows local users to (1) overwrite arbitrary files via a symlink attack on the adcheckDMoutput temporary file, … CWE-59
Link Following
CVE-2012-6348 2024-11-21 10:46 2013-01-5 Show GitHub Exploit DB Packet Storm
293315 - twiki
foswiki
twiki
foswiki
The localization functionality in TWiki before 5.1.3, and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6, allows remote attackers to cause a denial of service (memory consumption) via a large i… CWE-189
Numeric Errors
CVE-2012-6330 2024-11-21 10:46 2013-01-5 Show GitHub Exploit DB Packet Storm
293316 - perl perl The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and fully qualified method names during compilation of bracket n… CWE-94
Code Injection
CVE-2012-6329 2024-11-21 10:46 2013-01-5 Show GitHub Exploit DB Packet Storm
293317 - rubyonrails rails The Authlogic gem for Ruby on Rails, when used with certain versions before 3.2.10, makes potentially unsafe find_by_id method calls, which might allow remote attackers to conduct CVE-2012-6496 SQL i… CWE-89
SQL Injection
CVE-2012-6497 2024-11-21 10:46 2013-01-4 Show GitHub Exploit DB Packet Storm
293318 - rubyonrails rails
ruby_on_rails
SQL injection vulnerability in the Active Record component in Ruby on Rails before 3.0.18, 3.1.x before 3.1.9, and 3.2.x before 3.2.10 allows remote attackers to execute arbitrary SQL commands via a … CWE-89
SQL Injection
CVE-2012-6496 2024-11-21 10:46 2013-01-4 Show GitHub Exploit DB Packet Storm
293319 - e107 e107 Multiple cross-site request forgery (CSRF) vulnerabilities in e107_admin/download.php in e107 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL… CWE-352
 Origin Validation Error
CVE-2012-6434 2024-11-21 10:46 2013-01-3 Show GitHub Exploit DB Packet Storm
293320 - e107 e107 Cross-site request forgery (CSRF) vulnerability in e107_admin/newspost.php in e107 1.0.1 allows remote attackers to hijack the authentication of administrators for requests that conduct XSS attacks v… CWE-352
 Origin Validation Error
CVE-2012-6433 2024-11-21 10:46 2013-01-3 Show GitHub Exploit DB Packet Storm