Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217071 6.4 警告 Apache Software Foundation - Apache Solr の XML 用 UpdateRequestHandler における脆弱性 CWE-noinfo
情報不足
CVE-2013-6407 2014-04-7 17:56 2013-12-9 Show GitHub Exploit DB Packet Storm
217072 4.3 警告 Apache Software Foundation - Apache Solr の SolrResourceLoader におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-6397 2014-04-7 17:55 2013-09-21 Show GitHub Exploit DB Packet Storm
217073 5.7 警告 Linux
レッドハット
- Linux Kernel の KVM サブシステムの arch/x86/kvm/lapic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-6367 2014-04-7 17:54 2013-12-12 Show GitHub Exploit DB Packet Storm
217074 1.9 注意 LIGHTTPD - Debian GNU/Linux 上の lighthttpd における PHP 制御ソケットを乗っ取られる脆弱性 CWE-DesignError
CVE-2013-1427 2014-04-7 17:49 2013-03-15 Show GitHub Exploit DB Packet Storm
217075 5 警告 LIGHTTPD
オラクル
- lighttpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0295 2014-04-7 17:47 2010-02-3 Show GitHub Exploit DB Packet Storm
217076 5 警告 The PHP Group - PHP の SQLite における open_basedir 保護機能を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3365 2014-04-7 17:46 2012-07-19 Show GitHub Exploit DB Packet Storm
217077 10 危険 The PHP Group
アップル
- PHP の stream の実装における脆弱性 - CVE-2012-2688 2014-04-7 17:45 2012-07-19 Show GitHub Exploit DB Packet Storm
217078 4.3 警告 The PHP Group - PHP の Fileinfo コンポーネントの libmagic/softmagic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-4636 2014-04-7 17:44 2013-06-20 Show GitHub Exploit DB Packet Storm
217079 5 警告 The PHP Group - PHP の Calendar コンポーネントの jewish.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-4635 2014-04-7 17:43 2013-06-20 Show GitHub Exploit DB Packet Storm
217080 5 警告 The PHP Group
アップル
- PHP の ext/standard/quot_print.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2110 2014-04-7 17:40 2013-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295401 - moodle moodle lib/db/upgrade.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not set the correct registration_hubs.secret value during installation, which allows remote attackers to bypass intended ac… CWE-310
Cryptographic Issues
CVE-2011-4303 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295402 - moodle moodle mnet/xmlrpc/client.php in MNET in Moodle 1.9.x before 1.9.14, 2.0.x before 2.0.5, and 2.1.x before 2.1.2 does not properly process the return value of the openssl_verify function, which allows remote… CWE-20
 Improper Input Validation 
CVE-2011-4302 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295403 - moodle moodle The MoodleQuickForm class in the Forms Library in lib/formslib.php in Moodle 1.9.x before 1.9.14, 2.0.x before 2.0.5, and 2.1.x before 2.1.2 does not recognize Forms API setConstant operations, which… NVD-CWE-noinfo
CVE-2011-4301 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295404 - moodle moodle The file_browser component in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 does not properly restrict access to category and course data, which allows remote attackers to obtain potentially sensi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4300 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295405 - moodle moodle Cross-site scripting (XSS) vulnerability in mod/wiki/pagelib.php in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allows remote authenticated users to inject arbitrary web script or HTML via a wik… CWE-79
Cross-site Scripting
CVE-2011-4299 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295406 - moodle moodle Multiple cross-site request forgery (CSRF) vulnerabilities in mod/wiki/ components in Moodle 2.0.x before 2.0.5 and 2.1.x before 2.1.2 allow remote attackers to hijack the authentication of arbitrary… CWE-352
 Origin Validation Error
CVE-2011-4298 2024-11-21 10:32 2012-07-11 Show GitHub Exploit DB Packet Storm
295407 - linux linux_kernel The encode_share_access function in fs/nfs/nfs4xdr.c in the Linux kernel before 2.6.29 allows local users to cause a denial of service (BUG and system crash) by using the mknod system call with a pat… NVD-CWE-noinfo
CVE-2011-4324 2024-11-21 10:32 2012-06-22 Show GitHub Exploit DB Packet Storm
295408 - icu-project international_components_for_unicode Stack-based buffer overflow in the _canonicalize function in common/uloc.c in International Components for Unicode (ICU) before 49.1 allows remote attackers to execute arbitrary code via a crafted lo… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4599 2024-11-21 10:32 2012-06-22 Show GitHub Exploit DB Packet Storm
295409 - canonical ubuntu_linux The Ubuntu One Client for Ubuntu 10.04 LTS, 11.04, 11.10, and 12.04 LTS does not properly validate SSL certificates, which allows remote attackers to spoof a server and modify or read sensitive infor… CWE-20
 Improper Input Validation 
CVE-2011-4409 2024-11-21 10:32 2012-06-16 Show GitHub Exploit DB Packet Storm
295410 - canonical ubuntu_linux The Single Sign On Client (ubuntu-sso-client) for Ubuntu 11.04 and 11.10 does not properly validate SSL certificates when using HTTPS, which allows remote attackers to spoof a server and modify or re… NVD-CWE-Other
CVE-2011-4408 2024-11-21 10:32 2012-06-16 Show GitHub Exploit DB Packet Storm