Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216891 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品の docshell 実装における偽装された baseURI プロパティで URL の読み込みを誘発される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1530 2014-05-27 17:36 2014-04-29 Show GitHub Exploit DB Packet Storm
216892 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の Web Notification API におけるソースコンポーネントの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1529 2014-05-27 17:34 2014-04-29 Show GitHub Exploit DB Packet Storm
216893 10 危険 Mozilla Foundation - 複数の Mozilla 製品の nsXBLProtoImpl::InstallImplementation 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1524 2014-05-27 17:32 2014-04-29 Show GitHub Exploit DB Packet Storm
216894 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品の read_u32 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1523 2014-05-27 16:43 2014-04-29 Show GitHub Exploit DB Packet Storm
216895 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1518 2014-05-27 16:41 2014-04-29 Show GitHub Exploit DB Packet Storm
216896 6.5 警告 PostgreSQL.org - PostgreSQL の contrib/hstore/hstore_io.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-2669 2014-05-26 18:17 2014-02-20 Show GitHub Exploit DB Packet Storm
216897 - - アドビシステムズ - Adobe Shockwave Player に旧バージョンの Flash ランタイムが同梱されている問題 - - 2014-05-26 18:10 2012-12-19 Show GitHub Exploit DB Packet Storm
216898 5.8 警告 Ruby-lang.org - Ruby の openssl 拡張機能における Ruby スクリプトのコンテキスト中の署名を偽装される脆弱性 CWE-399
リソース管理の問題
CVE-2014-2734 2014-05-26 18:09 2014-04-16 Show GitHub Exploit DB Packet Storm
216899 6.8 警告 Moxiecode Systems AB - WordPress 用 TinyMCE Color Picker プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3845 2014-05-26 15:33 2014-05-12 Show GitHub Exploit DB Packet Storm
216900 5 警告 Moxiecode Systems AB - WordPress 用 TinyMCE Color Picker プラグインにおけるプラグイン設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3844 2014-05-26 15:32 2014-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295721 - cisco ios Cisco IOS 12.2 through 12.4 and 15.0 does not recognize the vrf-also keyword during enforcement of access-class commands, which allows remote attackers to establish TELNET connections from arbitrary … CWE-20
 Improper Input Validation 
CVE-2012-0339 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295722 - cisco ios Cisco IOS 12.2 through 12.4 and 15.0 does not recognize the vrf-also keyword during enforcement of access-class commands, which allows remote attackers to establish SSH connections from arbitrary sou… CWE-20
 Improper Input Validation 
CVE-2012-0338 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295723 - cisco unified_meetingplace SQL injection vulnerability in the web component in Cisco Unified MeetingPlace 7.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCtx08939. CWE-89
SQL Injection
CVE-2012-0337 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295724 - cisco adaptive_security_appliance_software
5500_series_adaptive_security_appliance
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 through 8.4 do not properly perform proxy authentication during attempts to cut through a firewall, which allows remote … CWE-287
Improper Authentication
CVE-2012-0335 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295725 - cisco small_business_ip_phone_firmware
small_business_ip_phone
Cisco Small Business IP phones with SPA 500 series firmware 7.4.9 and earlier do not require authentication for Push XML requests, which allows remote attackers to make telephone calls via an XML doc… CWE-287
Improper Authentication
CVE-2012-0333 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295726 - quest toad_for_data_analysts Quest Toad for Data Analysts 3.0.1 uses weak permissions (Everyone: Full Control) for the %COMMONPROGRAMFILES%\Quest Shared directory, which allows local users to gain privileges via a Trojan horse f… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0279 2024-11-21 10:34 2012-05-2 Show GitHub Exploit DB Packet Storm
295727 - justsystems just_school
shuriken
shuriken_pro
ichitaro
ichitaro_viewer
just_frontier
rekishimail_sengokubusho_no_missho
rekishimail_bakumatsushishi_no_missho
just_jump
oreplug
ichit…
Buffer overflow in JustSystems Ichitaro 2011 Sou, Ichitaro 2006 through 2011, Ichitaro Government 2006 through 2010, Ichitaro Portable with oreplug, Ichitaro Viewer, JUST School, JUST School 2009 and… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0269 2024-11-21 10:34 2012-04-28 Show GitHub Exploit DB Packet Storm
295728 - debian apache2 The default configuration of the apache2 package in Debian GNU/Linux squeeze before 2.2.16-6+squeeze7, wheezy before 2.2.22-4, and sid before 2.2.22-4, when mod_php or mod_rivet is used, provides exa… NVD-CWE-Other
CVE-2012-0216 2024-11-21 10:34 2012-04-23 Show GitHub Exploit DB Packet Storm
295729 - emc data_protection_advisor Integer overflow in the DPA_Utilities library in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (infinite loop) via a negative 64-bit value… CWE-189
Numeric Errors
CVE-2012-0407 2024-11-21 10:34 2012-04-20 Show GitHub Exploit DB Packet Storm
295730 - emc data_protection_advisor The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0406 2024-11-21 10:34 2012-04-20 Show GitHub Exploit DB Packet Storm