Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216321 10 危険 Schneider Electric - Schneider Electric Modicon PLC Ethernet モジュールの SchneiderWEB におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0754 2014-10-7 16:00 2014-09-16 Show GitHub Exploit DB Packet Storm
216322 5 警告 ZyXEL - ZyXEL SBG-3300 Security Gateway のファームウェアのログインページにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-7278 2014-10-7 15:41 2014-10-2 Show GitHub Exploit DB Packet Storm
216323 4.3 警告 ZyXEL - ZyXEL SBG-3300 Security Gateway のファームウェアのログインページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7277 2014-10-7 15:40 2014-10-2 Show GitHub Exploit DB Packet Storm
216324 4 警告 シスコシステムズ - Cisco WebEx Meetings Server における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3400 2014-10-7 15:24 2014-10-3 Show GitHub Exploit DB Packet Storm
216325 5 警告 シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアの SSL VPN の実装における重要なソフトウェアのバージョン情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3398 2014-10-7 15:24 2014-10-6 Show GitHub Exploit DB Packet Storm
216326 7.5 危険 シスコシステムズ - 複数の ASR 9000 デバイス上で稼動する Cisco IOS XR における Typhoon ラインカードの ACL 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3396 2014-10-7 15:23 2014-10-6 Show GitHub Exploit DB Packet Storm
216327 9.3 危険 アップル - Apple OS X の IOHIDSecurePromptClient 関数における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-7861 2014-10-7 14:19 2014-10-2 Show GitHub Exploit DB Packet Storm
216328 7.1 危険 Rockwell Automation - Rockwell Automation Allen-Bradley MicroLogix 1400 コントローラの DNP3 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5410 2014-10-7 12:15 2014-09-30 Show GitHub Exploit DB Packet Storm
216329 4.3 警告 ヒューレット・パッカード - HP Systems Insight Manager におけるクリックジャッキング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2645 2014-10-7 12:02 2014-10-2 Show GitHub Exploit DB Packet Storm
216330 4.3 警告 ヒューレット・パッカード - HP Systems Insight Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2644 2014-10-7 12:02 2014-10-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292531 7.1 HIGH
Local
fedoraproject fedora The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symli… CWE-59
Link Following
CVE-2013-0159 2024-11-21 10:46 2018-05-2 Show GitHub Exploit DB Packet Storm
292532 5.9 MEDIUM
Network
elinks
twibright
elinks
links
ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2012-6709 2024-11-21 10:46 2018-02-24 Show GitHub Exploit DB Packet Storm
292533 6.1 MEDIUM
Network
fortinet fortidb Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before 4.4.2 allow remote attackers to inject arbitrary web script or HTML via the co… CWE-79
Cross-site Scripting
CVE-2012-6347 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292534 6.1 MEDIUM
Network
fortinet fortiweb Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) redir or (2) mkey parameter to waf/pcre_expressi… CWE-79
Cross-site Scripting
CVE-2012-6346 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292535 6.1 MEDIUM
Network
jquery jquery jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differentiate selectors from HTML in a reliable fashion. In vulnerable versions, jQuery… CWE-79
Cross-site Scripting
CVE-2012-6708 2024-11-21 10:46 2018-01-19 Show GitHub Exploit DB Packet Storm
292536 6.1 MEDIUM
Network
dragonbyte-tech vbdownloads_module Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownloads module 1.3.2 and earlier for vBulletin allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-6682 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
292537 6.1 MEDIUM
Network
dragonbyte-tech forumon_rpg_module Multiple cross-site scripting (XSS) vulnerabilities in actions/main.php in the DragonByte Technologies Forumon RPG module before 1.0.8 for vBulletin when creating a new monster, allow remote attacker… CWE-79
Cross-site Scripting
CVE-2012-6671 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
292538 6.1 MEDIUM
Network
dragonbyte-tech vbactivity_module Multiple cross-site scripting (XSS) vulnerabilities in the DragonByte Technologies vbActivity module before 3.0.1 for vBulletin allow remote attackers to inject arbitrary web script or HTML via the r… CWE-79
Cross-site Scripting
CVE-2012-6670 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
292539 6.1 MEDIUM
Network
dragonbyte-tech vbshout_module Multiple cross-site scripting (XSS) vulnerabilities in the Shout Reports in the DragonByte Technologies vBShout module before 6.0.6 for vBulletin allow remote attackers to inject arbitrary web script… CWE-79
Cross-site Scripting
CVE-2012-6668 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
292540 6.1 MEDIUM
Network
dragonbyte-tech vbshout Cross-site scripting (XSS) vulnerability in vbshout.php in DragonByte Technologies vBShout module for vBulletin allows remote attackers to inject arbitrary web script or HTML via the shout parameter … CWE-79
Cross-site Scripting
CVE-2012-6667 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm