Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216461 7.2 危険 Little Kernel project - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで配布される Little Kernel ブートローダにおけるブートイメージの認証要件を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0973 2014-08-26 15:37 2014-06-13 Show GitHub Exploit DB Packet Storm
216462 4.6 警告 SaltStack - Salt における脆弱性 CWE-59
リンク解釈の問題
CVE-2014-3563 2014-08-26 15:16 2014-08-1 Show GitHub Exploit DB Packet Storm
216463 9.4 危険 ヒューレット・パッカード - HP Service Manager におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2014-2634 2014-08-26 14:55 2014-08-22 Show GitHub Exploit DB Packet Storm
216464 6.8 警告 ヒューレット・パッカード - HP Service Manager のサーバにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2633 2014-08-26 14:54 2014-08-22 Show GitHub Exploit DB Packet Storm
216465 10 危険 ヒューレット・パッカード - HP Service Manager の WebTier コンポーネントにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-2632 2014-08-26 14:54 2014-08-22 Show GitHub Exploit DB Packet Storm
216466 4.3 警告 ヒューレット・パッカード - HP Service Manager の Mobility Web Client および Service Request Catalog コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6222 2014-08-26 14:53 2013-10-21 Show GitHub Exploit DB Packet Storm
216467 4.6 警告 IBM - IBM Power 7 システムにおける Service Processor 特権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-6306 2014-08-26 12:27 2014-08-19 Show GitHub Exploit DB Packet Storm
216468 10 危険 Shenzhen Tenda Technology Co.,Ltd. - Shenzhen Tenda Technology Tenda A5s ルータのファームウェアにおける認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5246 2014-08-26 11:43 2014-08-17 Show GitHub Exploit DB Packet Storm
216469 4.7 警告 Xen プロジェクト - Xen の特定の MMU 仮想化操作におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5149 2014-08-26 11:29 2014-08-12 Show GitHub Exploit DB Packet Storm
216470 4.7 警告 Xen プロジェクト - Xen の特定の MMU 仮想化操作におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5146 2014-08-26 11:28 2014-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296001 - adobe acrobat
acrobat_reader
Stack-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2049 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296002 - adobe shockwave_player Adobe Shockwave Player before 11.6.6.636 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2047 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296003 - adobe shockwave_player Adobe Shockwave Player before 11.6.6.636 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2046 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296004 - adobe shockwave_player Adobe Shockwave Player before 11.6.6.636 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2045 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296005 - adobe shockwave_player Adobe Shockwave Player before 11.6.6.636 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2044 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296006 - adobe shockwave_player Adobe Shockwave Player before 11.6.6.636 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2043 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296007 - kyle_browning cdn2_video Cross-site request forgery (CSRF) vulnerability in the CDN2 Video module 6.x for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. CWE-352
 Origin Validation Error
CVE-2012-2155 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296008 - kyle_browning cdn2_video Cross-site scripting (XSS) vulnerability in the CDN2 Video module 6.x for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-2154 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296009 - chaos_tool_suite_project ctools Cross-site scripting (XSS) vulnerability in the Chaos tool suite (aka CTools) module 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with the post comments permission to inject ar… CWE-79
Cross-site Scripting
CVE-2012-2082 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
296010 - moshe_weitzman organic_groups The Organic Groups (OG) module 6.x-2.x before 6.x-2.3 for Drupal does not properly restrict access, which allows remote attackers to obtain sensitive information such as private group titles via a re… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2081 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm