Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216581 6.5 警告 OrangeHRM - OrangeHRM の lib/models/benefits/Hsp.php の updateStatus 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1506 2014-09-19 16:32 2012-04-24 Show GitHub Exploit DB Packet Storm
216582 5 警告 Schneider Electric - Schneider Electric StruxureWare SCADA Expert ClearSCADA におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5413 2014-09-19 14:16 2014-09-16 Show GitHub Exploit DB Packet Storm
216583 5 警告 Schneider Electric - Schneider Electric StruxureWare SCADA Expert ClearSCADA におけるデータベースレコードを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5412 2014-09-19 14:16 2014-09-16 Show GitHub Exploit DB Packet Storm
216584 3.5 注意 Schneider Electric - Schneider Electric StruxureWare SCADA Expert ClearSCADA におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5411 2014-09-19 14:15 2014-09-16 Show GitHub Exploit DB Packet Storm
216585 4.3 警告 IBM - IBM Security QRadar SIEM における重要な平文情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4826 2014-09-19 14:15 2014-09-15 Show GitHub Exploit DB Packet Storm
216586 6.5 警告 IBM - IBM Security QRadar SIEM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4824 2014-09-19 14:14 2014-09-15 Show GitHub Exploit DB Packet Storm
216587 4.3 警告 IBM - IBM Integration Bus Manufacturing Pack におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4820 2014-09-19 14:14 2014-09-16 Show GitHub Exploit DB Packet Storm
216588 4 警告 IBM - IBM WebSphere Message Broker および IBM Integration Bus の Web ユーザインターフェースにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4819 2014-09-19 14:13 2014-09-10 Show GitHub Exploit DB Packet Storm
216589 4.3 警告 php365 - 365 Links シリーズにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5317 2014-09-19 13:32 2014-09-17 Show GitHub Exploit DB Packet Storm
216590 4 警告 FileMaker, Inc - FileMaker Pro における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-2319 2014-09-18 21:06 2013-05-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294341 - cisco unified_computing_system MCTOOLS in the fabric interconnect in Cisco Unified Computing System (UCS) allows local users to execute arbitrary Baseboard Management Controller (BMC) commands by leveraging (1) local, (2) shell-le… CWE-20
 Improper Input Validation 
CVE-2012-4089 2024-11-21 10:42 2013-09-24 Show GitHub Exploit DB Packet Storm
294342 - cisco unified_computing_system A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793. CWE-20
 Improper Input Validation 
CVE-2012-4087 2024-11-21 10:42 2013-09-24 Show GitHub Exploit DB Packet Storm
294343 - cisco unified_computing_system The Intelligent Platform Management Interface (IPMI) implementation in the Blade Management Controller in Cisco Unified Computing System (UCS) allows remote attackers to enumerate valid usernames by … CWE-20
 Improper Input Validation 
CVE-2012-4085 2024-11-21 10:42 2013-09-24 Show GitHub Exploit DB Packet Storm
294344 - cisco unified_computing_system The Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) does not properly handle SSH escape sequences, which allows remote authenticated users to bypass an unspecified authe… CWE-287
Improper Authentication
CVE-2012-4078 2024-11-21 10:42 2013-09-24 Show GitHub Exploit DB Packet Storm
294345 - cisco unified_computing_system MCTools in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to gain privileges by entering crafted command-line parameters on a Fabric Interconnect device, a… CWE-20
 Improper Input Validation 
CVE-2012-4082 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm
294346 - cisco unified_computing_system MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to cause a denial of service (application crash) via invalid MCTools parameters, aka Bug ID CSCt… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4081 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm
294347 - cisco unified_computing_system The Manager component in Cisco Unified Computing System (UCS) allows local users to cause a denial of service via an invalid Smart Call Home contact address, aka Bug ID CSCtl00186. CWE-20
 Improper Input Validation 
CVE-2012-4093 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm
294348 - cisco unified_computing_system Multiple buffer overflows in the administrative web interface in Cisco Unified Computing System (UCS) allow remote authenticated users to cause a denial of service (memory corruption and session term… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4083 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm
294349 - cisco unified_computing_system The Board Management Controller (BMC) in the Serial over LAN (SoL) subsystem in Cisco Unified Computing System (UCS) relies on a hardcoded private key, which allows man-in-the-middle attackers to obt… CWE-255
Credentials Management
CVE-2012-4074 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm
294350 - cisco unified_computing_system The KVM subsystem in the client in Cisco Unified Computing System (UCS) does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers, and read or mod… CWE-310
Cryptographic Issues
CVE-2012-4073 2024-11-21 10:42 2013-09-21 Show GitHub Exploit DB Packet Storm