Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217171 7.5 危険 エフ・セキュア - 複数の F-Secure 製品における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7369 2014-04-22 19:40 2013-04-24 Show GitHub Exploit DB Packet Storm
217172 2.1 注意 エフ・セキュア - Mac OS X 用の複数の F-Secure 製品におけるファイアーウォールを無効にされる脆弱性 CWE-noinfo
情報不足
CVE-2012-6646 2014-04-22 19:18 2012-12-12 Show GitHub Exploit DB Packet Storm
217173 6.3 警告 Novell
Lennart Poettering
- systemd の session_link_x11_socket 関数における任意のファイルを作成される脆弱性 CWE-59
リンク解釈の問題
CVE-2012-0871 2014-04-22 18:57 2012-02-29 Show GitHub Exploit DB Packet Storm
217174 4.3 警告 デル - Dell SonicWALL Email Security におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2879 2014-04-22 18:42 2014-03-26 Show GitHub Exploit DB Packet Storm
217175 5 警告 オラクル - Oracle Sun Solaris の Lighthttpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-2469 2014-04-22 16:19 2014-04-1 Show GitHub Exploit DB Packet Storm
217176 5 警告 Net-SNMP - Net-SNMP の AgentX サブエージェントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2310 2014-04-22 16:11 2014-04-14 Show GitHub Exploit DB Packet Storm
217177 4.3 警告 SAP - SAProuter の passwordCheck 関数におけるパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0984 2014-04-22 14:59 2014-04-15 Show GitHub Exploit DB Packet Storm
217178 6.5 警告 Apache Software Foundation - Apache Syncope における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-0111 2014-04-22 14:21 2014-04-10 Show GitHub Exploit DB Packet Storm
217179 6.8 警告 SpringSource - Spring Framework の Spring MVC の Jaxb2RootElementHttpMessageConverter における任意のファイルを読まれる脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0054 2014-04-22 13:59 2014-02-18 Show GitHub Exploit DB Packet Storm
217180 6.8 警告 Amos Benari - Ruby 用 rbovirt gem における中間者攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2014-0036 2014-04-22 13:35 2014-02-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292451 - ushahidi ushahidi_platform Multiple SQL injection vulnerabilities in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) the verify function in application/contr… CWE-89
SQL Injection
CVE-2012-3468 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292452 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, allows remote attackers to bypass intended restrictions on filename extensions for created files via a %00 sequence in a pathname within an HTTP… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2969 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292453 - caucho resin Directory traversal vulnerability in Caucho Quercus, as distributed in Resin before 4.0.29, allows remote attackers to create files in arbitrary directories via a .. (dot dot) in a pathname within an… CWE-22
Path Traversal
CVE-2012-2968 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292454 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, does not properly implement the == (equals sign equals sign) operator for comparisons, which has unspecified impact and context-dependent attack… NVD-CWE-Other
CVE-2012-2967 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292455 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, overwrites entries in the SERVER superglobal array on the basis of POST parameters, which has unspecified impact and remote attack vectors. NVD-CWE-Other
CVE-2012-2966 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292456 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, does not properly handle unspecified characters in the names of variables, which has unknown impact and remote attack vectors, related to an "HT… CWE-20
 Improper Input Validation 
CVE-2012-2965 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292457 - breakingpointsystems breakingpoint_storm_appliance_ctm
breakingpoint_storm_appliance
The BreakingPoint Storm appliance before 3.0 requires cleartext credentials for establishing a session from a GUI administrative client, which allows remote attackers to obtain sensitive information … CWE-20
 Improper Input Validation 
CVE-2012-2964 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292458 - breakingpointsystems breakingpoint_storm_appliance_ctm
breakingpoint_storm_appliance
The administrative interface in the embedded web server on the BreakingPoint Storm appliance before 3.0 does not require authentication for the gwt/BugReport script, which allows remote attackers to … CWE-287
Improper Authentication
CVE-2012-2963 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
292459 - pnp4nagios pnp4nagios PNP4Nagios 0.6 through 0.6.16 uses world-readable permissions for process_perfdata.cfg, which allows local users to obtain the Gearman shared secret by reading the file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3457 2024-11-21 10:40 2012-08-12 Show GitHub Exploit DB Packet Storm
292460 - oracle database_server SQL injection vulnerability in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to execute arbitrary SQL commands via vectors in… CWE-89
SQL Injection
CVE-2012-3132 2024-11-21 10:40 2012-08-11 Show GitHub Exploit DB Packet Storm