Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216801 6 警告 IBM - IBM Rational Software Architect Design Manager および Rational Rhapsody Design Manager における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-0948 2014-08-1 18:03 2014-07-18 Show GitHub Exploit DB Packet Storm
216802 3.5 注意 IBM - IBM Rational Team Concert における認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3050 2014-08-1 18:03 2014-07-18 Show GitHub Exploit DB Packet Storm
216803 3.5 注意 IBM - 複数の IBM Maximo 製品および SmartCloud Control Desk における CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2014-3026 2014-08-1 18:03 2014-07-24 Show GitHub Exploit DB Packet Storm
216804 6.9 警告 IBM - IBM Tivoli Integrated Portal の Embedded WebSphere Application Server の install.sh における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3020 2014-08-1 18:03 2014-07-24 Show GitHub Exploit DB Packet Storm
216805 4.3 警告 IBM - 複数の IBM 製品で使用される IBM Atlas Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0889 2014-08-1 18:03 2014-07-25 Show GitHub Exploit DB Packet Storm
216806 4.3 警告 シスコシステムズ - Cisco Prime Data Center Network Manager の Web サーバコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3329 2014-07-31 17:20 2014-07-28 Show GitHub Exploit DB Packet Storm
216807 7.5 危険 WeBid Support - WeBid における LDAP インジェクション攻撃を実行される脆弱性 CWE-Other
その他
CVE-2014-5114 2014-07-31 16:40 2014-07-10 Show GitHub Exploit DB Packet Storm
216808 6.8 警告 Gentoo Linux
Canonical
Fedora Project
Transmission Project
- Transmission の bitfield.c 内の tr_bitfieldEnsureNthBitAlloced 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-4909 2014-07-31 16:12 2014-07-1 Show GitHub Exploit DB Packet Storm
216809 4.3 警告 Another Awesome Stuff - ZeroCMS の zero_user_account.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4710 2014-07-31 16:02 2014-07-24 Show GitHub Exploit DB Packet Storm
216810 2.6 注意 Ubiquiti Networks - Ubiquiti UniFi Controller における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2226 2014-07-31 15:58 2014-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292041 7.2 HIGH
Network
dlink dsr-250n_firmware D-Link DSR-250N devices before 1.08B31 allow remote authenticated users to obtain "persistent root access" via the BusyBox CLI, as demonstrated by overwriting the super user password. CWE-862
 Missing Authorization
CVE-2012-6614 2024-11-21 10:46 2020-02-20 Show GitHub Exploit DB Packet Storm
292042 6.3 MEDIUM
Network
socialengine socialengine Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4.2.4. CWE-352
 Origin Validation Error
CVE-2012-6721 2024-11-21 10:46 2020-02-12 Show GitHub Exploit DB Packet Storm
292043 6.1 MEDIUM
Network
socialengine socialengine Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HTML via the (1) title parameter to music/create, (2) locatio… CWE-79
Cross-site Scripting
CVE-2012-6720 2024-11-21 10:46 2020-02-12 Show GitHub Exploit DB Packet Storm
292044 9.8 CRITICAL
Network
polycom hdx_system_software An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded Polycom Linux Development Platform 2.14.g3. It has a blank administrative pass… CWE-798
 Use of Hard-coded Credentials
CVE-2012-6611 2024-11-21 10:46 2020-02-11 Show GitHub Exploit DB Packet Storm
292045 5.4 MEDIUM
Network
cpanel whm
cpanel
The clientconf.html and detailbw.html pages in x3 in cPanel & WHM 11.34.0 (build 8) have a XSS vulnerability. CWE-79
Cross-site Scripting
CVE-2012-6449 2024-11-21 10:46 2020-02-11 Show GitHub Exploit DB Packet Storm
292046 6.1 MEDIUM
Network
vbseo vbseo vBSeo before 3.6.0PL2 allows XSS via the member.php u parameter. CWE-79
Cross-site Scripting
CVE-2012-6666 2024-11-21 10:46 2020-02-10 Show GitHub Exploit DB Packet Storm
292047 6.5 MEDIUM
Network
netgear wgr614v9_firmware
wgr614v7_firmware
An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previously used passwords on the device, for both the co… CWE-200
Information Exposure
CVE-2012-6341 2024-11-21 10:46 2020-02-7 Show GitHub Exploit DB Packet Storm
292048 4.6 MEDIUM
Physics
netgear wgr614v9_firmware
wgr614v7_firmware
An Authentication vulnerability exists in NETGEAR WGR614 v7 and v9 due to a hardcoded credential used for serial programming, a related issue to CVE-2006-1002. CWE-287
Improper Authentication
CVE-2012-6340 2024-11-21 10:46 2020-02-7 Show GitHub Exploit DB Packet Storm
292049 5.4 MEDIUM
Network
havalite havalite Havalite CMS 1.1.7 has a stored XSS vulnerability CWE-79
Cross-site Scripting
CVE-2013-0161 2024-11-21 10:46 2020-01-30 Show GitHub Exploit DB Packet Storm
292050 8.8 HIGH
Network
polycom hdx_video_end_points
uc_apl
Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote authenticated users to execute arbitrary commands as demonstrated by a ; (semicolon) to the ping command feature. CWE-78
OS Command 
CVE-2012-6610 2024-11-21 10:46 2020-01-29 Show GitHub Exploit DB Packet Storm