Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216881 7.9 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける任意のコードを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0356 2014-04-17 10:59 2014-04-11 Show GitHub Exploit DB Packet Storm
216882 7.9 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0355 2014-04-17 10:58 2014-04-11 Show GitHub Exploit DB Packet Storm
216883 7.8 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける index.asp のログインアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0354 2014-04-17 10:57 2014-04-11 Show GitHub Exploit DB Packet Storm
216884 6.1 警告 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0353 2014-04-17 10:57 2014-04-11 Show GitHub Exploit DB Packet Storm
216885 9 危険 Xangati - Xangati XSR および XNR における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0359 2014-04-17 09:27 2014-04-14 Show GitHub Exploit DB Packet Storm
216886 7.8 危険 Xangati - Xangati XSR および XNR におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0358 2014-04-17 09:26 2014-04-14 Show GitHub Exploit DB Packet Storm
216887 1.5 注意 Ontario Systems - Ontario Systems Artiva Agency に認証不備の脆弱性 - CVE-2014-0348 2014-04-17 09:25 2014-04-14 Show GitHub Exploit DB Packet Storm
216888 7.1 危険 ジュニパーネットワークス - Juniper SRX シリーズのサービスゲートウェイで使用される Juniper Junos におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2714 2014-04-16 19:28 2014-04-9 Show GitHub Exploit DB Packet Storm
216889 5 警告 ジュニパーネットワークス - Juniper MX シリーズおよび T4000 ルータで使用される Juniper Junos におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-2713 2014-04-16 19:27 2014-04-10 Show GitHub Exploit DB Packet Storm
216890 4.3 警告 ジュニパーネットワークス - Juniper Junos の J-Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2712 2014-04-16 19:26 2014-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292941 - bloxx web_filtering Bloxx Web Filtering before 5.0.14 does not properly interpret X-Forwarded-For headers during access-control and logging operations for HTTPS connection attempts, which allows remote attackers to bypa… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2566 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292942 - bloxx web_filtering Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2565 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292943 - bloxx web_filtering Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before 5.0.14 allow remote attackers to hijack the authentication of administrators f… CWE-352
 Origin Validation Error
CVE-2012-2564 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292944 - bloxx web_filtering Multiple cross-site scripting (XSS) vulnerabilities in Bloxx Web Filtering before 5.0.14 allow (1) remote attackers to inject arbitrary web script or HTML via web traffic that is examined within the … CWE-79
Cross-site Scripting
CVE-2012-2563 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292945 - siemens wincc Buffer overflow in the DiagAgent web server in Siemens WinCC 7.0 SP3 through Update 2 allows remote attackers to cause a denial of service (agent outage) via crafted input. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2598 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292946 - siemens wincc Multiple directory traversal vulnerabilities in Siemens WinCC 7.0 SP3 before Update 2 allow remote authenticated users to read arbitrary files via a crafted parameter in a URL. CWE-22
Path Traversal
CVE-2012-2597 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292947 - siemens wincc The XPath functionality in unspecified web applications in Siemens WinCC 7.0 SP3 before Update 2 does not properly handle special characters in parameters, which allows remote authenticated users to … CWE-94
Code Injection
CVE-2012-2596 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292948 - siemens wincc Multiple cross-site scripting (XSS) vulnerabilities in unspecified web applications in Siemens WinCC 7.0 SP3 before Update 2 allow remote attackers to inject arbitrary web script or HTML via vectors … CWE-79
Cross-site Scripting
CVE-2012-2595 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292949 - collabnet scrumworks The server in CollabNet ScrumWorks Pro before 6.0 allows remote authenticated users to gain privileges and obtain sensitive information via a modified desktop client. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2603 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
292950 - s9y serendipity SQL injection vulnerability in include/functions_trackbacks.inc.php in Serendipity 1.6.2 allows remote attackers to execute arbitrary SQL commands via the url parameter to comment.php. CWE-89
SQL Injection
CVE-2012-2762 2024-11-21 10:39 2012-06-8 Show GitHub Exploit DB Packet Storm