Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217211 4.7 警告 IBM - IBM AIX および VIOS の ptrace システムコールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-0930 2014-05-9 14:11 2014-05-2 Show GitHub Exploit DB Packet Storm
217212 2.6 注意 Novell - Novell Open Enterprise Server の Novell Client for Linux の /opt/novell/ncl/bin/nwrights における S 権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-0595 2014-05-9 12:28 2014-04-21 Show GitHub Exploit DB Packet Storm
217213 7.6 危険 シマンテック - Symantec Critical System Protection におけるポリシー設定を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5016 2014-05-9 12:14 2013-07-29 Show GitHub Exploit DB Packet Storm
217214 4.3 警告 シスコシステムズ - Telco および Wireless 用 Cisco Broadcast Access Center の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2191 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
217215 6.8 警告 シスコシステムズ - Telco および Wireless 用 Cisco Broadcast Access Center の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2190 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
217216 6.8 警告 シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアにおけるファイルを読まれる脆弱性 CWE-287
不適切な認証
CVE-2014-2181 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
217217 5 警告 シスコシステムズ - VMware 用 Cisco Nexus 1000V InterCloud における ACL 拒否のステートメントを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0685 2014-05-8 18:43 2014-05-6 Show GitHub Exploit DB Packet Storm
217218 4.6 警告 シスコシステムズ - Cisco Nexus 7000 スイッチ上で稼働する Cisco NX-OS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0684 2014-05-8 18:43 2014-05-6 Show GitHub Exploit DB Packet Storm
217219 5 警告 strongSwan - strongSwan におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-2891 2014-05-8 18:22 2014-05-5 Show GitHub Exploit DB Packet Storm
217220 3.5 注意 サイボウズ - サイボウズ ガルーンの電話メモにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1988 2014-05-8 18:16 2014-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292231 - ricky_morse excluded_users Multiple cross-site scripting (XSS) vulnerabilities in the Excluded Users module 6.x-1.x before 6.x-1.1 for Drupal allow remote attackers to inject arbitrary web script or HTML via a (1) user name or… CWE-79
Cross-site Scripting
CVE-2012-4490 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292232 - mark_burdett securelogin Open redirect vulnerability in the securelogin_secure_redirect function in the Secure Login module 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to redirect users to arbitrary web sites a… CWE-20
 Improper Input Validation 
CVE-2012-4489 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292233 - location_module_project location The Location module 6.x before 6.x-3.2 and 7.x before 7.x-3.0-alpha1 for Drupal does not properly check user or node access permissions, which allows remote attackers to read node or user results via… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4488 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292234 - manuel_garcia galleryformatter Multiple cross-site scripting (XSS) vulnerabilities in the galleryformatter_field_formatter_view functiuon in galleryformatter.tpl.php the Gallery formatter module before 7.x-1.2 for Drupal allow rem… CWE-79
Cross-site Scripting
CVE-2012-4485 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292235 - trexart campaignmonitor Cross-site scripting (XSS) vulnerability in the administrative interface in the Campaign Monitor module before 6.x-2.5 for Drupal allows remote attackers to inject arbitrary web script or HTML via un… CWE-79
Cross-site Scripting
CVE-2012-4484 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292236 - acquia commons The commons_discussion_views_default_views function in modules/features/commons_discussion/commons_discussion.views_default.inc in the Drupal Commons module 6.x-2.x before 6.x-2.8 for Drupal does not… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4483 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292237 - longwaveconsulting ubercart_securetrading_payment_method_module The Ubercart SecureTrading Payment Method module 6.x for Drupal does not properly verify payment notification information, which allows remote attackers to purchase an item without paying via unspeci… CWE-20
 Improper Input Validation 
CVE-2012-4482 2024-11-21 10:42 2012-11-1 Show GitHub Exploit DB Packet Storm
292238 - libtiff libtiff Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF im… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4447 2024-11-21 10:42 2012-10-29 Show GitHub Exploit DB Packet Storm
292239 - c61 tokyo_bbs Cross-site scripting (XSS) vulnerability in tokyo_bbs.cgi in Come on Girls Interface (CGI) Tokyo BBS allows remote attackers to inject arbitrary web script or HTML via vectors related to the error pa… CWE-79
Cross-site Scripting
CVE-2012-4019 2024-11-21 10:42 2012-10-26 Show GitHub Exploit DB Packet Storm
292240 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 allow remote attackers to bypass the Same O… CWE-74
Injection
CVE-2012-4196 2024-11-21 10:42 2012-10-30 Show GitHub Exploit DB Packet Storm