Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216311 7.5 危険 シスコシステムズ - Cisco OpenH264 の decode_slice.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-8002 2014-11-27 15:20 2014-11-24 Show GitHub Exploit DB Packet Storm
216312 7.5 危険 シスコシステムズ - Cisco OpenH264 の decode.cpp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-8001 2014-11-27 15:20 2014-11-24 Show GitHub Exploit DB Packet Storm
216313 5 警告 Openswan - Openswan におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2037 2014-11-27 15:19 2014-02-21 Show GitHub Exploit DB Packet Storm
216314 5 警告 シーメンス - 複数のシーメンス製品における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-8552 2014-11-27 15:12 2014-11-21 Show GitHub Exploit DB Packet Storm
216315 10 危険 シーメンス - 複数のシーメンス製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8551 2014-11-27 15:12 2014-11-21 Show GitHub Exploit DB Packet Storm
216316 7.8 危険 Zoho Corporation - ManageEngine OpUtils の ConfigSaveServlet サーブレットにおけるファイルを公開される脆弱性 CWE-200
情報漏えい
CVE-2014-8678 2014-11-27 14:58 2014-11-21 Show GitHub Exploit DB Packet Storm
216317 5 警告 シスコシステムズ - Network Convergence System 6000 デバイス上で稼働する Cisco IOS XR の lighttpd モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-8005 2014-11-27 14:53 2014-11-25 Show GitHub Exploit DB Packet Storm
216318 6.5 警告 Jexperts - JExperts Channel Platform におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8558 2014-11-27 14:46 2014-10-27 Show GitHub Exploit DB Packet Storm
216319 4.3 警告 IBM - IBM Web Experience Factory におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6196 2014-11-27 14:45 2014-11-12 Show GitHub Exploit DB Packet Storm
216320 3.5 注意 IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6093 2014-11-27 14:45 2014-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291901 - redhat enterprise_virtualization Cross-site scripting (XSS) vulnerability in the addAlert function in the RedirectServlet servlet in oVirt Engine and Red Hat Enterprise Virtualization Manager (RHEV-M), as used in Red Hat Enterprise … CWE-79
Cross-site Scripting
CVE-2013-4181 2024-11-21 10:55 2013-09-17 Show GitHub Exploit DB Packet Storm
291902 - redhat
theforeman
openstack
foreman
app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4182 2024-11-21 10:55 2013-09-17 Show GitHub Exploit DB Packet Storm
291903 - redhat
theforeman
openstack
foreman
The (1) power and (2) ipmi_boot actions in the HostController in Foreman before 1.2.2 allow remote attackers to cause a denial of service (memory consumption) via unspecified input that is converted … CWE-20
 Improper Input Validation 
CVE-2013-4180 2024-11-21 10:55 2013-09-17 Show GitHub Exploit DB Packet Storm
291904 - openstack havana
compute
The security group extension in OpenStack Compute (Nova) Grizzly 2013.1.3, Havana before havana-3, and earlier allows remote attackers to cause a denial of service (resource consumption and crash) vi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4179 2024-11-21 10:55 2013-09-17 Show GitHub Exploit DB Packet Storm
291905 - moodle moodle Multiple cross-site scripting (XSS) vulnerabilities in Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before 2.5.2 allow remote attackers to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2013-4341 2024-11-21 10:55 2013-09-16 Show GitHub Exploit DB Packet Storm
291906 - moodle moodle Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before 2.5.2 does not prevent use of '\0' characters in query strings, which might allow remote attackers to conduct SQL injec… CWE-89
SQL Injection
CVE-2013-4313 2024-11-21 10:55 2013-09-16 Show GitHub Exploit DB Packet Storm
291907 - xen xen The xenlight library (libxl) in Xen 4.0.x through 4.2.x, when IOMMU is disabled, provides access to a busmastering-capable PCI passthrough device before the IOMMU setup is complete, which allows loca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4329 2024-11-21 10:55 2013-09-13 Show GitHub Exploit DB Packet Storm
291908 - liquidthreads_project liquidthreads Cross-site scripting (XSS) vulnerability in pages/TalkpageHistoryView.php in the LiquidThreads (LQT) extension 2.x and possibly 3.x for MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.… CWE-79
Cross-site Scripting
CVE-2013-4308 2024-11-21 10:55 2013-09-12 Show GitHub Exploit DB Packet Storm
291909 - mediawiki mediawiki Multiple cross-site scripting (XSS) vulnerabilities in repo/includes/EntityView.php in the Wikibase extension for MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allow … CWE-79
Cross-site Scripting
CVE-2013-4307 2024-11-21 10:55 2013-09-12 Show GitHub Exploit DB Packet Storm
291910 - wordpress wordpress wp-admin/includes/post.php in WordPress before 3.6.1 allows remote authenticated users to spoof the authorship of a post by leveraging the Author role and providing a modified user_ID parameter. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4340 2024-11-21 10:55 2013-09-12 Show GitHub Exploit DB Packet Storm