Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217181 5 警告 The Foreman - Foreman における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0192 2014-05-12 17:02 2014-04-24 Show GitHub Exploit DB Packet Storm
217182 6.8 警告 The Foreman - Foreman における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2014-0090 2014-05-12 17:00 2014-02-26 Show GitHub Exploit DB Packet Storm
217183 4.3 警告 Slashes and Dots Sdn Bhd - Offiria におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2689 2014-05-12 16:57 2014-05-7 Show GitHub Exploit DB Packet Storm
217184 3.3 注意 Novell
Travis Shirk
- Python 用 eyeD3 の tag.py における任意のファイルを変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2014-1934 2014-05-12 16:34 2014-05-7 Show GitHub Exploit DB Packet Storm
217185 4.3 警告 Cristian Gafton - Pam 用 pam_userdb モジュールにおけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2013-7041 2014-05-12 16:34 2013-12-4 Show GitHub Exploit DB Packet Storm
217186 4.9 警告 GNU Project - GNU Rush における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6889 2014-05-12 16:23 2013-12-29 Show GitHub Exploit DB Packet Storm
217187 2.1 注意 CloudBees - Jenkins 用 Subversion Plugin におけるパスワードおよび SSH 秘密鍵を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-6372 2014-05-12 16:11 2013-11-20 Show GitHub Exploit DB Packet Storm
217188 4.9 警告 Fabrice Bellard
Canonical
- QEMU の hw/net/vmxnet3.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-4544 2014-05-12 15:51 2013-06-12 Show GitHub Exploit DB Packet Storm
217189 5.5 警告 Fedora Project
Zabbix
- Zabbix の Frontend における任意のユーザのメディアを変更される脆弱性 CWE-noinfo
情報不足
CVE-2014-1685 2014-05-12 12:23 2014-02-6 Show GitHub Exploit DB Packet Storm
217190 4 警告 Fedora Project
Zabbix
- Zabbix の API における任意のユーザになりすまされる脆弱性 CWE-287
不適切な認証
CVE-2014-1682 2014-05-12 12:19 2014-02-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293641 - apache commons_compress Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream) in Apache Commons Compress before 1.4.1 allows remote attackers to cause a den… CWE-310
Cryptographic Issues
CVE-2012-2098 2024-11-21 10:38 2012-06-30 Show GitHub Exploit DB Packet Storm
293642 - puppetlabs
puppet
puppet
puppet_enterprise
telnet.rb in Puppet 2.7.x before 2.7.13 and Puppet Enterprise (PE) 1.2.x, 2.0.x, and 2.5.x before 2.5.1 allows local users to overwrite arbitrary files via a symlink attack on the NET::Telnet connect… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1989 2024-11-21 10:38 2012-06-28 Show GitHub Exploit DB Packet Storm
293643 - ibm aix
vios
The default configuration of sendmail in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, allows local users to gain privileges by entering a command in a .forward file in a home directory. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2200 2024-11-21 10:38 2012-06-27 Show GitHub Exploit DB Packet Storm
293644 - oracle
mariadb
mysql
mariadb
sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, whe… CWE-287
Improper Authentication
CVE-2012-2122 2024-11-21 10:38 2012-06-27 Show GitHub Exploit DB Packet Storm
293645 - apache roller Multiple cross-site scripting (XSS) vulnerabilities in Apache Roller before 5.0.1 allow remote authenticated users to inject arbitrary web script or HTML by leveraging the blogger role. CWE-79
Cross-site Scripting
CVE-2012-2381 2024-11-21 10:38 2012-06-26 Show GitHub Exploit DB Packet Storm
293646 - apache roller Multiple cross-site request forgery (CSRF) vulnerabilities in the admin/editor console in Apache Roller before 5.0.1 allow remote attackers to hijack the authentication of admins or editors by levera… CWE-352
 Origin Validation Error
CVE-2012-2380 2024-11-21 10:38 2012-06-26 Show GitHub Exploit DB Packet Storm
293647 - ibm aix libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2179 2024-11-21 10:38 2012-06-22 Show GitHub Exploit DB Packet Storm
293648 - ibm ds_storage_manager_host_software
ds4100
ds4200
ds4300
ds4400
ds4500
ds4700
ds4800
system_storage_dcs3700_storage_subsystem
system_storage_ds3200
system_storage_ds3300
Cross-site scripting (XSS) vulnerability in SoftwareRegistration.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote atta… CWE-79
Cross-site Scripting
CVE-2012-2172 2024-11-21 10:38 2012-06-22 Show GitHub Exploit DB Packet Storm
293649 - ibm ds_storage_manager_host_software
ds4100
ds4200
ds4300
ds4400
ds4500
ds4700
ds4800
system_storage_dcs3700_storage_subsystem
system_storage_ds3200
system_storage_ds3300
SQL injection vulnerability in ModuleServlet.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote authenticated users to e… CWE-89
SQL Injection
CVE-2012-2171 2024-11-21 10:38 2012-06-22 Show GitHub Exploit DB Packet Storm
293650 - linux linux_kernel fs/proc/root.c in the procfs implementation in the Linux kernel before 3.2 does not properly interact with CLONE_NEWPID clone system calls, which allows remote attackers to cause a denial of service … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2127 2024-11-21 10:38 2012-06-22 Show GitHub Exploit DB Packet Storm