Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217181 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの fastfat.sys における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-4115 2014-10-21 11:51 2014-10-14 Show GitHub Exploit DB Packet Storm
217182 5.8 警告 オラクル - Oracle Identity Manager におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2014-2880 2014-10-21 11:01 2014-04-3 Show GitHub Exploit DB Packet Storm
217183 5 警告 IBM
Apache Software Foundation
オラクル
- Apache Tomcat の java/org/apache/coyote/ajp/AbstractAjpProcessor.java におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0095 2014-10-21 10:50 2014-03-27 Show GitHub Exploit DB Packet Storm
217184 4.3 警告 IBM
Apache Software Foundation
オラクル
- Apache Tomcat の org/apache/catalina/connector/CoyoteAdapter.java におけるセッション固定攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0033 2014-10-21 10:43 2014-01-31 Show GitHub Exploit DB Packet Storm
217185 7.5 危険 Epicor Software - Epicor Procurement における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4313 2014-10-20 18:33 2014-10-3 Show GitHub Exploit DB Packet Storm
217186 4.3 警告 Epicor Software - Epicor Enterprise におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4312 2014-10-20 18:33 2014-09-30 Show GitHub Exploit DB Packet Storm
217187 4.3 警告 CloudBees - CloudBees Jenkins 用 Monitoring プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3678 2014-10-20 18:18 2014-10-1 Show GitHub Exploit DB Packet Storm
217188 4 警告 IBM - IBM WebSphere Portal における認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4761 2014-10-20 18:17 2014-10-7 Show GitHub Exploit DB Packet Storm
217189 4.3 警告 Textpattern - Textpattern CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4737 2014-10-20 18:14 2014-09-20 Show GitHub Exploit DB Packet Storm
217190 4.9 警告 Linux - Linux Kernel の fs/namespace.c の pivot_root の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-7970 2014-10-20 18:12 2014-10-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297111 - cisco unified_computing_system The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges and execute arbitrary commands via crafted parameters to a file-related command, aka Bu… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4107 2024-11-21 10:42 2013-10-13 Show GitHub Exploit DB Packet Storm
297112 - cisco unified_computing_system The fabric-interconnect component in Cisco Unified Computing System (UCS) uses the same privilege level for execution of every script, which allows local users to gain privileges and execute arbitrar… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4106 2024-11-21 10:42 2013-10-13 Show GitHub Exploit DB Packet Storm
297113 - cisco unified_computing_system The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to cause a denial of service (component crash) via crafted "debug hardware" parameters, aka Bug ID CSCtq86… CWE-20
 Improper Input Validation 
CVE-2012-4105 2024-11-21 10:42 2013-10-13 Show GitHub Exploit DB Packet Storm
297114 - gnu glibc Stack-based buffer overflow in string/strcoll_l.c in the GNU C Library (aka glibc or libc6) 2.17 and earlier allows context-dependent attackers to cause a denial of service (crash) or possibly execut… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4424 2024-11-21 10:42 2013-10-10 Show GitHub Exploit DB Packet Storm
297115 - gnu glibc Integer overflow in string/strcoll_l.c in the GNU C Library (aka glibc or libc6) 2.17 and earlier allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary… CWE-189
Numeric Errors
CVE-2012-4412 2024-11-21 10:42 2013-10-10 Show GitHub Exploit DB Packet Storm
297116 - cisco nx-os Directory traversal vulnerability in the CLI parser in Cisco NX-OS allows local users to create arbitrary script files via a relative pathname in the "file name" parameter, aka Bug IDs CSCua71557 and… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4141 2024-11-21 10:42 2013-10-5 Show GitHub Exploit DB Packet Storm
297117 - cisco nx-os The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output redirection, aka Bug IDs CSCts56672 and CSCts56669. CWE-20
 Improper Input Validation 
CVE-2012-4122 2024-11-21 10:42 2013-10-5 Show GitHub Exploit DB Packet Storm
297118 - cisco nx-os The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed UPDATE message, aka … CWE-20
 Improper Input Validation 
CVE-2012-4098 2024-11-21 10:42 2013-10-5 Show GitHub Exploit DB Packet Storm
297119 - cisco nx-os The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 message, aka Bug ID CSCtj73415. CWE-20
 Improper Input Validation 
CVE-2012-4091 2024-11-21 10:42 2013-10-5 Show GitHub Exploit DB Packet Storm
297120 - cisco nx-os
nexus_7000
nexus_7000_10-slot
nexus_7000_18-slot
nexus_7000_9-slot
The management interface in Cisco NX-OS on Nexus 7000 devices allows remote authenticated users to obtain sensitive configuration-file information by leveraging the network-operator role, aka Bug ID … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4090 2024-11-21 10:42 2013-10-5 Show GitHub Exploit DB Packet Storm