Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217111 5 警告 マイクロソフト - Microsoft Windows Server 2008 および Windows Server 2012 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0255 2014-05-15 14:28 2014-05-13 Show GitHub Exploit DB Packet Storm
217112 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品の ShellExecute API における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1807 2014-05-15 14:27 2014-05-13 Show GitHub Exploit DB Packet Storm
217113 10 危険 マイクロソフト - Microsoft .NET Framework の .NET Remoting の実装における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1806 2014-05-15 14:26 2014-05-13 Show GitHub Exploit DB Packet Storm
217114 6.8 警告 マイクロソフト - 複数の Microsoft Windows 製品のグループポリシーの実装における重要な認証情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-1812 2014-05-15 14:25 2014-05-13 Show GitHub Exploit DB Packet Storm
217115 6.8 警告 マイクロソフト - Microsoft Office の MSCOMCTL ライブラリにおける ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1809 2014-05-15 14:25 2014-05-13 Show GitHub Exploit DB Packet Storm
217116 4.3 警告 マイクロソフト - Microsoft Office 2013 における重要なトークン情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-1808 2014-05-15 14:24 2014-05-13 Show GitHub Exploit DB Packet Storm
217117 4.3 警告 マイクロソフト - 複数の Microsoft 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1754 2014-05-15 14:21 2014-05-13 Show GitHub Exploit DB Packet Storm
217118 9 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-0251 2014-05-15 14:21 2014-05-13 Show GitHub Exploit DB Packet Storm
217119 5 警告 Haxx
アップル
Canonical
- cURL および libcurl の cookie.c における Cookie を盗まれる脆弱性 CWE-200
情報漏えい
CVE-2013-1944 2014-05-14 18:45 2013-04-12 Show GitHub Exploit DB Packet Storm
217120 4.3 警告 FreeType Project - FreeType の _bdf_parse_glyphs 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-5670 2014-05-14 18:44 2012-12-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295971 - microsoft windows_server_2008
windows_xp
windows_7
windows_server_2003
windows_vista
Unspecified vulnerability in DirectShow in DirectX in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1… NVD-CWE-noinfo
CVE-2012-0004 2024-11-21 10:34 2012-01-11 Show GitHub Exploit DB Packet Storm
295972 - microsoft windows_server_2008
windows_7
windows_xp
windows_server_2003
windows_vista
Unspecified vulnerability in winmm.dll in Windows Multimedia Library in Windows Media Player (WMP) in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows remote a… NVD-CWE-noinfo
CVE-2012-0003 2024-11-21 10:34 2012-01-11 Show GitHub Exploit DB Packet Storm
295973 - microsoft windows_server_2008
windows_7
windows_xp
windows_server_2003
windows_vista
The kernel in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly load structured exception han… NVD-CWE-Other
CVE-2012-0001 2024-11-21 10:34 2012-01-11 Show GitHub Exploit DB Packet Storm
295974 - apache struts The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrary commands via unspecified vectors. NOTE: the vendor chara… CWE-94
Code Injection
CVE-2012-0394 2024-11-21 10:34 2012-01-9 Show GitHub Exploit DB Packet Storm
295975 - apache struts The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted p… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0393 2024-11-21 10:34 2012-01-9 Show GitHub Exploit DB Packet Storm
295976 - apache struts The CookieInterceptor component in Apache Struts before 2.3.1.1 does not use the parameter-name whitelist, which allows remote attackers to execute arbitrary commands via a crafted HTTP Cookie header… NVD-CWE-noinfo
CVE-2012-0392 2024-11-21 10:34 2012-01-9 Show GitHub Exploit DB Packet Storm
295977 - maradns maradns MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a den… CWE-400
 Uncontrolled Resource Consumption
CVE-2012-0024 2024-11-21 10:34 2012-01-8 Show GitHub Exploit DB Packet Storm
295978 - wordpress wordpress Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via th… CWE-79
Cross-site Scripting
CVE-2012-0287 2024-11-21 10:34 2012-01-6 Show GitHub Exploit DB Packet Storm
295979 - gnu gnutls The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-handling code only if there is a specific relationship between a padding length and the ciphertext size, which makes it eas… CWE-310
Cryptographic Issues
CVE-2012-0390 2024-11-21 10:34 2012-01-6 Show GitHub Exploit DB Packet Storm
295980 - openssl openssl The GOST ENGINE in OpenSSL before 1.0.0f does not properly handle invalid parameters for the GOST block cipher, which allows remote attackers to cause a denial of service (daemon crash) via crafted d… CWE-399
 Resource Management Errors
CVE-2012-0027 2024-11-21 10:34 2012-01-6 Show GitHub Exploit DB Packet Storm