Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216411 7.2 危険 OleumTech - OleumTech WIO DH2 Wireless Gateway および Sensor Wireless I/O Module における通信を偽装される脆弱性 CWE-Other
その他
CVE-2014-2361 2014-07-25 14:33 2014-07-21 Show GitHub Exploit DB Packet Storm
216412 7.5 危険 OleumTech - OleumTech WIO DH2 Wireless Gateway および Sensor Wireless I/O Module における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2360 2014-07-25 14:32 2014-07-21 Show GitHub Exploit DB Packet Storm
216413 3.5 注意 オムロン株式会社 - Omron NS シリーズの HMI ターミナルの Web アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2370 2014-07-25 12:44 2014-07-22 Show GitHub Exploit DB Packet Storm
216414 6 警告 オムロン株式会社 - Omron NS シリーズの HMI ターミナルの Web アプリケーションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2369 2014-07-25 12:44 2014-07-22 Show GitHub Exploit DB Packet Storm
216415 8.5 危険 Canary Labs - TrendLink の ActiveX コントロールにおける任意のプログラムが実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3022 2014-07-25 12:10 2013-04-8 Show GitHub Exploit DB Packet Storm
216416 10 危険 Attachmate - Attachmate Verastream Process Designer における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-0607 2014-07-25 11:50 2014-07-18 Show GitHub Exploit DB Packet Storm
216417 5 警告 Tenable, Inc. - Nessus用 Tenable Web UI の /server/properties リソースにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4980 2014-07-25 11:38 2014-06-27 Show GitHub Exploit DB Packet Storm
216418 8.3 危険 Hanvon Technology Co.,Ltd - Hanvon Face ID に認証欠如の問題 CWE-287
CWE-Other
CVE-2014-2938 2014-07-24 18:15 2014-05-20 Show GitHub Exploit DB Packet Storm
216419 4.3 警告 Con Kolivas
sgminer project
- sgminer および cgminer の util.c の parse_notify 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-4503 2014-07-24 18:01 2014-06-6 Show GitHub Exploit DB Packet Storm
216420 10 危険 Con Kolivas
sgminer project
BFGMiner project
- sgminer などの製品の parse_notify 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-4502 2014-07-24 18:00 2014-06-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292791 - ruby-lang ruby The rb_get_path_check function in file.c in Ruby 1.9.3 before patchlevel 286 and Ruby 2.0.0 before r37163 allows context-dependent attackers to create files in unexpected locations or with unexpected… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4522 2024-11-21 10:43 2012-11-25 Show GitHub Exploit DB Packet Storm
292792 - tecnick tcexam Multiple cross-site scripting (XSS) vulnerabilities in admin/code/tce_select_users_popup.php in Nicola Asuni TCExam before 11.3.009 allow remote attackers to inject arbitrary web script or HTML via t… CWE-79
Cross-site Scripting
CVE-2012-4602 2024-11-21 10:43 2012-11-24 Show GitHub Exploit DB Packet Storm
292793 - tecnick tcexam Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_g… CWE-89
SQL Injection
CVE-2012-4601 2024-11-21 10:43 2012-11-24 Show GitHub Exploit DB Packet Storm
292794 - xen xen Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments… CWE-399
 Resource Management Errors
CVE-2012-4539 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
292795 - xen xen Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2m_entry function fails, which allows local HVM guest OS administrators to cause… CWE-16
Configuration
CVE-2012-4537 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
292796 - xen xen The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to cause a denial of service (Xen crash) via a crafted pirq value that triggers an o… NVD-CWE-noinfo
CVE-2012-4536 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
292797 - xen xen Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (Xen infinite loop and physical CPU consumption) by setting a VCPU with an "inapp… CWE-399
 Resource Management Errors
CVE-2012-4535 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
292798 - mcrypt mcrypt Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file name. NOTE: it … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4527 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
292799 - uninett radsecproxy The DTLS support in radsecproxy before 1.6.2 does not properly verify certificates when there are configuration blocks with CA settings that are unrelated to the block being used for verifying the ce… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4566 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm
292800 - google web_toolkit Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 Beta and release candidates before 2.4.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vector… CWE-79
Cross-site Scripting
CVE-2012-4563 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm