Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216731 4.3 警告 IBM - WebSphere MQ の Telemetry Component における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-6116 2014-10-27 11:49 2014-10-8 Show GitHub Exploit DB Packet Storm
216732 1.9 注意 IBM - IBM WebSphere MQ classes for Java ライブラリおよび Websphere MQ Explorer における事前に設定された平文のパスワードを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-4822 2014-10-27 11:48 2014-10-13 Show GitHub Exploit DB Packet Storm
216733 4.3 警告 Aptana - Aflax におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5331 2014-10-24 18:32 2014-10-16 Show GitHub Exploit DB Packet Storm
216734 6.5 警告 Tips and Tricks HQ - WordPress 用 All In One WP Security & Firewall プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-6242 2014-10-24 18:24 2014-09-12 Show GitHub Exploit DB Packet Storm
216735 5 警告 シスコシステムズ - Cisco WebEx Meetings Server における任意のファイルのダウンロードを誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2014-3395 2014-10-24 18:23 2014-09-30 Show GitHub Exploit DB Packet Storm
216736 6.8 警告 シスコシステムズ - Cisco Prime Optical の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3408 2014-10-24 18:22 2014-10-15 Show GitHub Exploit DB Packet Storm
216737 7.1 危険 シスコシステムズ - Cisco Intrusion Prevention System ソフトウェアの IP ロギング機能ににおけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-3406 2014-10-24 18:22 2014-10-14 Show GitHub Exploit DB Packet Storm
216738 7.8 危険 シスコシステムズ - Cisco TelePresence MCU ソフトウェアのネットワークスタック におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3397 2014-10-24 18:21 2014-10-15 Show GitHub Exploit DB Packet Storm
216739 5 警告 シスコシステムズ - Cisco Email Security Appliance 上で稼働する Cisco AsyncOS の ZIP インスペクションエンジンにおけるマルウェアフィルタリングを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3381 2014-10-24 18:20 2014-10-14 Show GitHub Exploit DB Packet Storm
216740 7.1 危険 シスコシステムズ - Cisco TelePresence Video Communication Server および Expressway ソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3370 2014-10-24 18:20 2014-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296641 - ibm websphere_mq
websphere_mq_managed_file_transfer
Multiple cross-site request forgery (CSRF) vulnerabilities in the Web Gateway component in IBM WebSphere MQ File Transfer Edition 7.0.4 and earlier, and WebSphere MQ - Managed File Transfer 7.5, allo… CWE-352
 Origin Validation Error
CVE-2012-3294 2024-11-21 10:40 2012-08-17 Show GitHub Exploit DB Packet Storm
296642 - standards_based_linux_instrumentation sblim-sfcb sfcb in sblim-sfcb places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory. NVD-CWE-Other
CVE-2012-3381 2024-11-21 10:40 2012-08-17 Show GitHub Exploit DB Packet Storm
296643 - hp service_manager_web_tier
service_center_web_tier
Cross-site scripting (XSS) vulnerability in HP Service Manager Web Tier 7.11, 9.21, and 9.30, and HP Service Center Web Tier 6.28, allows remote attackers to inject arbitrary web script or HTML via u… CWE-79
Cross-site Scripting
CVE-2012-3251 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296644 - hp service_manager_server
service_center_server
Unspecified vulnerability in HP Service Manager Server 7.11, 9.21, and 9.30, and HP Service Center Server 6.28, allows remote attackers to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2012-3250 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296645 - hp fortify_software_security_center HP Fortify Software Security Center 3.1, 3.3, 3.4, and 3.5 allows remote authenticated users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2012-3249 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296646 - hp fortify_software_security_center HP Fortify Software Security Center 3.1, 3.3, 3.4, and 3.5 allows remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2012-3248 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296647 - hp integrity_firmware
integrity
itegrity
Unspecified vulnerability on the HP Integrity Server BL860c i2, BL870c i2, and BL890c i2 with firmware before 26.31 and the HP Integrity Server rx2800 i2 with firmware before 26.30 allows local users… NVD-CWE-noinfo
CVE-2012-3247 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296648 - tridium niagara_ax The default configuration of Tridium Niagara AX Framework through 3.6 uses a cleartext base64 format for transmission of credentials in cookies, which allows remote attackers to obtain sensitive info… CWE-522
 Insufficiently Protected Credentials
CVE-2012-3025 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296649 - tridium niagara_ax Tridium Niagara AX Framework through 3.6 uses predictable values for (1) session IDs and (2) keys, which might allow remote attackers to bypass authentication via a brute-force attack. CWE-287
Improper Authentication
CVE-2012-3024 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm
296650 - siemens comos Siemens COMOS before 9.1 Patch 413, 9.2 before Update 03 Patch 023, and 10.0 before Patch 005 allows remote authenticated users to obtain database administrative access via unspecified method calls. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3009 2024-11-21 10:40 2012-08-16 Show GitHub Exploit DB Packet Storm