Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216471 3.5 注意 IBM - IBM WebSphere Application Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4770 2014-10-10 18:01 2014-09-18 Show GitHub Exploit DB Packet Storm
216472 9 危険 TestLink Development Team - TestLink における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5308 2014-10-10 16:58 2014-08-1 Show GitHub Exploit DB Packet Storm
216473 4.3 警告 ZeroMQ - libzmq における反射攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-7203 2014-10-10 16:44 2014-09-20 Show GitHub Exploit DB Packet Storm
216474 4.3 警告 ZeroMQ - libzmq の stream_engine.cpp におけるダウングレード攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-7202 2014-10-10 16:35 2014-09-20 Show GitHub Exploit DB Packet Storm
216475 4 警告 Adaptive Computing - Adaptive Computing Moab における任意のユーザを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2014-5376 2014-10-10 15:52 2014-10-6 Show GitHub Exploit DB Packet Storm
216476 4 警告 Adaptive Computing - Adaptive Computing Moab のサーバにおける任意のユーザを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2014-5375 2014-10-10 15:51 2014-10-6 Show GitHub Exploit DB Packet Storm
216477 5 警告 Adaptive Computing - Adaptive Computing Moab における署名のチェックを回避される脆弱性 CWE-287
不適切な認証
CVE-2014-5300 2014-10-10 15:51 2014-10-6 Show GitHub Exploit DB Packet Storm
216478 10 危険 hapi.js - Node.js 用 hapi サーバフレームワークの bassmaster プラグインの lib/batch.js の internals.batch における任意の Javascript コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-7205 2014-10-10 13:49 2014-09-26 Show GitHub Exploit DB Packet Storm
216479 3.5 注意 Drupal - Drupal 用 Zen テーマの template.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7980 2014-10-10 12:27 2014-04-30 Show GitHub Exploit DB Packet Storm
216480 3.5 注意 Drupal - Drupal 用 SimpleCorp テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7979 2014-10-10 12:26 2014-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294451 - mcafee email_and_web_security
email_gateway
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to read arbitrary files via a c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4585 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294452 - mcafee email_and_web_security
email_gateway
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, does not properly encrypt system-backup data, which makes it easi… CWE-310
Cryptographic Issues
CVE-2012-4584 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294453 - mcafee email_and_web_security
email_gateway
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of… CWE-200
Information Exposure
CVE-2012-4583 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294454 - mcafee email_and_web_security
email_gateway
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to reset the passwords of arbit… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4582 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294455 - mcafee email_and_web_security
email_gateway
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, does not disable the server-side session token upon the closing o… CWE-287
Improper Authentication
CVE-2012-4581 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294456 - mcafee email_and_web_security
email_gateway
Cross-site scripting (XSS) vulnerability in McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote attacke… CWE-79
Cross-site Scripting
CVE-2012-4580 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294457 - phpmyadmin phpmyadmin Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.2.2 allow remote authenticated users to inject arbitrary web script or HTML via a Table Operations (1) TRUNCATE or (… CWE-79
Cross-site Scripting
CVE-2012-4579 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294458 - pawel_jakub_dawidek geli The geli encryption provider 7 before r239184 on FreeBSD 10 uses a weak Master Key, which makes it easier for local users to defeat a cryptographic protection mechanism via a brute-force attack. CWE-310
Cryptographic Issues
CVE-2012-4578 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294459 - korenix jetport The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, … CWE-255
Credentials Management
CVE-2012-4577 2024-11-21 10:43 2012-08-22 Show GitHub Exploit DB Packet Storm
294460 8.1 HIGH
Network
mediawiki mediawiki MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local database, (1) which could make it easier for context-dependent attackers to obtain cleartext passwords via a brute-force… CWE-798
 Use of Hard-coded Credentials
CVE-2012-4381 2024-11-21 10:42 2020-02-9 Show GitHub Exploit DB Packet Storm