Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216951 3.5 注意 IBM - IBM InfoSphere Master Data Management - Collaborative Edition および InfoSphere Master Data Management Server for Product Information Management の GDS コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0967 2014-07-22 17:33 2014-06-24 Show GitHub Exploit DB Packet Storm
216952 4.3 警告 IBM - IBM Business Process Manager および WebSphere Lombardi Edition におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0957 2014-07-22 17:33 2014-07-14 Show GitHub Exploit DB Packet Storm
216953 4.3 警告 OctavoCMS - OctavoCMS の admin/viewer.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4331 2014-07-22 17:24 2014-07-9 Show GitHub Exploit DB Packet Storm
216954 5 警告 アドバンテック株式会社 - Advantech WebAccess の bwocxrun ActiveX コントロールの BrowseFolder メソッドにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-2368 2014-07-22 16:09 2014-07-17 Show GitHub Exploit DB Packet Storm
216955 4.3 警告 アドバンテック株式会社 - Advantech WebAccess の broadweb/include/gChkCook.asp の ActiveX コントロールにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-2367 2014-07-22 16:09 2014-07-17 Show GitHub Exploit DB Packet Storm
216956 4 警告 アドバンテック株式会社 - Advantech WebAccess の upAdminPg.asp における認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-2366 2014-07-22 16:08 2014-07-17 Show GitHub Exploit DB Packet Storm
216957 5.5 警告 アドバンテック株式会社 - Advantech WebAccess における任意のファイルを作成される脆弱性 CWE-noinfo
情報不足
CVE-2014-2365 2014-07-22 16:08 2014-07-17 Show GitHub Exploit DB Packet Storm
216958 7.5 危険 アドバンテック株式会社 - Advantech WebAccess におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2364 2014-07-22 16:07 2014-07-17 Show GitHub Exploit DB Packet Storm
216959 5.8 警告 DELL EMC (旧 EMC Corporation) - EMC RecoverPoint Appliance におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2014-2519 2014-07-22 15:21 2014-07-18 Show GitHub Exploit DB Packet Storm
216960 5 警告 レッドハット - Red Hat Enterprise MRG で使用される Cumin におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2682 2014-07-22 15:21 2012-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296241 - ibm db2 IBM DB2 9.5 uses world-writable permissions for nodes.reg, which has unspecified impact and attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1797 2024-11-21 10:37 2012-03-21 Show GitHub Exploit DB Packet Storm
296242 - ibm db2 Unspecified vulnerability in IBM Tivoli Monitoring Agent (ITMA), as used in IBM DB2 9.5 before FP9 on UNIX, allows local users to gain privileges via unknown vectors. NVD-CWE-noinfo
CVE-2012-1796 2024-11-21 10:37 2012-03-21 Show GitHub Exploit DB Packet Storm
296243 - webglimpse webglimpse webglimpse.cgi in Webglimpse before 2.20.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter, as exploited in the wild in March 2012. CWE-78
OS Command 
CVE-2012-1795 2024-11-21 10:37 2012-03-21 Show GitHub Exploit DB Packet Storm
296244 - nikola_posa webfoliocms1.0.8
webfoliocms1.0.7
webfoliocms1.1.3
webfoliocms1.0.4
webfoliocms1.0.5
webfoliocms1.1.1
webfoliocms1.1.2
webfoliocms1.0.2
webfoliocms1.0.9
webfoliocms1.1.0
Multiple cross-site request forgery (CSRF) vulnerabilities in Webfolio CMS 1.1.4 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add an adminis… CWE-352
 Origin Validation Error
CVE-2012-1498 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296245 - netmechanica netdecision The Traffic Grapher Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the source code of NtDecision script files with a .nd extension via an invalid version number in… CWE-200
Information Exposure
CVE-2012-1466 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296246 - netmechanica netdecision Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause a denial of service (application crash) via a long URL in an HTTP request. NO… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1465 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296247 - netmechanica netdecision Dashboard Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the installation path via a request with a trailing "?" character, which causes Dashboard to attempt to ac… CWE-200
Information Exposure
CVE-2012-1464 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296248 - webgrind_project webgrind Absolute path traversal vulnerability in Webgrind 1.0 and 1.0.2 allows remote attackers to read arbitrary files via a full pathname in the file parameter to index.php. CWE-22
Path Traversal
CVE-2012-1790 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296249 - tskynet kongreg8 Multiple cross-site scripting (XSS) vulnerabilities in Kongreg8 1.7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) surname or (2) firstname parameters to modules/members/… CWE-79
Cross-site Scripting
CVE-2012-1789 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296250 - wonderdesk wonderdesk_sql Multiple cross-site scripting (XSS) vulnerabilities in wonderdesk.cgi in WonderDesk SQL 4.14 allow remote attackers to inject arbitrary web script or HTML via the (1) cus_email parameter in a cust_lo… CWE-79
Cross-site Scripting
CVE-2012-1788 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm