Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216581 7.5 危険 Arial Software - Arial Software Campaign Enterprise の Campaign11.exe における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3820 2014-08-15 18:18 2012-10-18 Show GitHub Exploit DB Packet Storm
216582 4.3 警告 MyBB Group - MyBB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5248 2014-08-15 16:59 2014-08-4 Show GitHub Exploit DB Packet Storm
216583 4.3 警告 Mozilla Foundation - Bugzilla の jsonrpc.cgi の WebService/Server/JSONRPC.pm の JSONP エンドポイント内の response 関数におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-1546 2014-08-15 15:33 2014-07-24 Show GitHub Exploit DB Packet Storm
216584 4.3 警告 Piwigo - Piwigo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1980 2014-08-15 13:35 2014-08-8 Show GitHub Exploit DB Packet Storm
216585 3.5 注意 Compfight - WordPress 用 Compfight プラグインの compfight-search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5202 2014-08-15 12:36 2014-07-3 Show GitHub Exploit DB Packet Storm
216586 6.5 警告 シスコシステムズ - Cisco Unified Communications Manager および Cisco Unified Presence Server の管理 Web インターフェースにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3339 2014-08-15 12:04 2014-08-12 Show GitHub Exploit DB Packet Storm
216587 8.5 危険 シスコシステムズ - Cisco Unified Communications Manager の CTIManager モジュールにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-3338 2014-08-15 12:04 2014-08-11 Show GitHub Exploit DB Packet Storm
216588 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager の SIP の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3337 2014-08-15 12:03 2014-08-11 Show GitHub Exploit DB Packet Storm
216589 4.4 警告 Puppet - Puppet Enterprise および Mcollective で使用される MCollective aes_security プラグインにおける許可されていない Mcollective 接続を確立される脆弱性 CWE-362
競合状態
CVE-2014-3251 2014-08-15 10:54 2014-07-15 Show GitHub Exploit DB Packet Storm
216590 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-3167 2014-08-15 10:47 2014-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294541 5.3 MEDIUM
Network
ibm infosphere_guardium IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to bypass security restrictions, caused by improper restrictions on the create new user account functionality. An attacker cou… CWE-20
 Improper Input Validation 
CVE-2012-3338 2024-11-21 10:40 2020-09-2 Show GitHub Exploit DB Packet Storm
294542 5.3 MEDIUM
Network
ibm infosphere_guardium IBM InfoSphere Guardium 8.0, 8.01, and 8.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" s… CWE-22
Path Traversal
CVE-2012-3337 2024-11-21 10:40 2020-09-2 Show GitHub Exploit DB Packet Storm
294543 8.8 HIGH
Network
ibm infosphere_guardium IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send specially-crafted SQL statements to multiple scripts, which could allow the attac… CWE-89
SQL Injection
CVE-2012-3336 2024-11-21 10:40 2020-09-2 Show GitHub Exploit DB Packet Storm
294544 6.1 MEDIUM
Network
longtailvideo jw_player Multiple cross-site scripting (XSS) vulnerabilities in LongTail Video JW Player through 5.10.2295 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) logo.link, or (3)… CWE-79
Cross-site Scripting
CVE-2012-3351 2024-11-21 10:40 2020-02-21 Show GitHub Exploit DB Packet Storm
294545 8.1 HIGH
Network
gatewaygeomatics mapserver Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote attackers to execute local PHP code and obtain sensitive information. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2012-2950 2024-11-21 10:40 2020-01-10 Show GitHub Exploit DB Packet Storm
294546 8.8 HIGH
Network
wisc htcondor The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmgahp_common.cpp in Condor 7.6.x before 7.6.10 and 7.8.x befo… NVD-CWE-noinfo
CVE-2012-3490 2024-11-21 10:40 2020-01-10 Show GitHub Exploit DB Packet Storm
294547 8.8 HIGH
Network
fedoraproject sssd A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup o… CWE-287
Improper Authentication
CVE-2012-3462 2024-11-21 10:40 2019-12-27 Show GitHub Exploit DB Packet Storm
294548 7.8 HIGH
Local
ecryptfs
debian
ecryptfs-utils
debian_linux
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation CWE-20
 Improper Input Validation 
CVE-2012-3409 2024-11-21 10:40 2019-12-20 Show GitHub Exploit DB Packet Storm
294549 7.8 HIGH
Local
plow_project plow plow has local buffer overflow vulnerability CWE-120
Classic Buffer Overflow
CVE-2012-3407 2024-11-21 10:40 2019-11-23 Show GitHub Exploit DB Packet Storm
294550 9.8 CRITICAL
Network
redhat enterprise_mrg cumin: At installation postgresql database user created without password CWE-20
 Improper Input Validation 
CVE-2012-3460 2024-11-21 10:40 2019-11-22 Show GitHub Exploit DB Packet Storm