Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216651 - - PNP4Nagios - ** 削除 ** PNP4Nagios の share/pnp/application/views/kohana_error_page.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2014-4740 2014-07-11 11:56 2014-04-6 Show GitHub Exploit DB Packet Storm
216652 7.5 危険 Another Awesome Stuff - ZeroCMS の zero_transact_article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4194 2014-07-11 11:33 2014-06-20 Show GitHub Exploit DB Packet Storm
216653 5.8 警告 FoeCMS - FoeCMS の msg.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2014-4851 2014-07-11 11:27 2014-07-4 Show GitHub Exploit DB Packet Storm
216654 4.3 警告 FoeCMS - FoeCMS の msg.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4849 2014-07-11 11:26 2014-07-4 Show GitHub Exploit DB Packet Storm
216655 7.5 危険 FoeCMS - FoeCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4850 2014-07-11 11:25 2014-07-4 Show GitHub Exploit DB Packet Storm
216656 4.3 警告 シスコシステムズ - Cisco Small Business SPA300 および SPA500 シリーズの IP phone の Web ユーザインターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3313 2014-07-10 18:21 2014-07-9 Show GitHub Exploit DB Packet Storm
216657 6.9 警告 シスコシステムズ - Cisco Small Business SPA300 および SPA500 phone のデバッグコンソールインターフェースにおける任意の debug シェルコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2014-3312 2014-07-10 18:20 2014-07-9 Show GitHub Exploit DB Packet Storm
216658 5 警告 シスコシステムズ - Cisco IOS および IOS XE の NTP の実装における時刻同期の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3309 2014-07-10 18:19 2014-07-9 Show GitHub Exploit DB Packet Storm
216659 7.8 危険 ネットギア - Netgear GS105PE Prosafe Plus Switch に認証情報がハードコードされている問題 CWE-255
CWE-Other
CVE-2014-2969 2014-07-10 17:10 2014-07-3 Show GitHub Exploit DB Packet Storm
216660 5.1 警告 リムアーツ - Becky! Internet Mail におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3891 2014-07-10 17:06 2014-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294101 - cisco ios Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957. CWE-399
 Resource Management Errors
CVE-2012-3079 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294102 - cisco unity_connection Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka Bug ID CSCtz76269. CWE-399
 Resource Management Errors
CVE-2012-3060 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294103 - cisco vpn_client Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka Bug ID CSCua28747. NVD-CWE-Other
CVE-2012-3052 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294104 - cisco nx-os
nexus_7000
nexus_7000_10-slot
nexus_7000_18-slot
nexus_7000_9-slot
Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process crash or packet loss) via a large number of ARP packets, aka Bug ID CSCtr44822. NVD-CWE-noinfo
CVE-2012-3051 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294105 - python beaker Beaker before 1.6.4, when using PyCrypto to encrypt sessions, uses AES in ECB cipher mode, which might allow remote attackers to obtain portions of sensitive session data via unspecified vectors. CWE-310
Cryptographic Issues
CVE-2012-3458 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294106 - kayako fusion Cross-site scripting (XSS) vulnerability in __swift/thirdparty/PHPExcel/PHPExcel/Shared/JAMA/docs/download.php in Kayako Fusion 4.40.1148, and possibly before 4.50.1581, allows remote attackers to in… CWE-79
Cross-site Scripting
CVE-2012-3233 2024-11-21 10:40 2012-09-16 Show GitHub Exploit DB Packet Storm
294107 - realnetworks realplayer
realplayer_sp
RealNetworks RealPlayer before 15.0.6.14, RealPlayer SP 1.0 through 1.1.5, and Mac RealPlayer before 12.0.1.1750 do not properly handle codec frame sizes in RealAudio files, which allows remote attac… CWE-189
Numeric Errors
CVE-2012-3234 2024-11-21 10:40 2012-09-12 Show GitHub Exploit DB Packet Storm
294108 - gentoo webmin file/edit_html.cgi in Webmin 1.590 and earlier does not perform an authorization check before showing a file's unedited contents, which allows remote attackers to read arbitrary files via the file fi… CWE-287
Improper Authentication
CVE-2012-2983 2024-11-21 10:40 2012-09-12 Show GitHub Exploit DB Packet Storm
294109 - gentoo webmin file/show.cgi in Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary commands via an invalid character in a pathname, as demonstrated by a | (pipe) character. NVD-CWE-Other
CVE-2012-2982 2024-11-21 10:40 2012-09-12 Show GitHub Exploit DB Packet Storm
294110 - gentoo webmin Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary Perl code via a crafted file associated with the type (aka monitor type name) parameter. CWE-20
 Improper Input Validation 
CVE-2012-2981 2024-11-21 10:40 2012-09-12 Show GitHub Exploit DB Packet Storm