Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217271 6.5 警告 Huge-IT - WordPress 用 Huge-IT Image Gallery プラグインの admin/gallery_func.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7153 2014-09-25 12:18 2014-08-25 Show GitHub Exploit DB Packet Storm
217272 4 警告 ヤフー株式会社 - Yahoo!ボックス(Android版) における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2014-5881 2014-09-25 12:09 2014-09-25 Show GitHub Exploit DB Packet Storm
217273 5 警告 アップル - Safari におけるアプリケーションキャッシュの取扱いに関する問題 CWE-DesignError
CVE-2014-4409 2014-09-25 12:01 2014-09-17 Show GitHub Exploit DB Packet Storm
217274 7.2 危険 Cobham plc - Cobham AVIATOR 700D および 700E 衛星通信用端末における特権的端末セッションを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2942 2014-09-25 11:57 2014-08-7 Show GitHub Exploit DB Packet Storm
217275 4 警告 FileMaker, Inc - FileMaker Pro における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2014-5321 2014-09-24 18:04 2014-09-18 Show GitHub Exploit DB Packet Storm
217276 6.1 警告 シスコシステムズ - Cisco Network Convergence System 6000 シリーズデバイス上で稼働する Cisco IOS XR におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3379 2014-09-24 17:58 2014-09-19 Show GitHub Exploit DB Packet Storm
217277 5 警告 シスコシステムズ - Cisco IOS XR の tacacsd におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3378 2014-09-24 17:56 2014-09-19 Show GitHub Exploit DB Packet Storm
217278 4 警告 シスコシステムズ - Cisco IOS XR の snmpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3377 2014-09-24 17:55 2014-09-19 Show GitHub Exploit DB Packet Storm
217279 5 警告 シスコシステムズ - Cisco IOS XR におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3376 2014-09-24 17:55 2014-09-19 Show GitHub Exploit DB Packet Storm
217280 6.6 警告 マイクロソフト - Microsoft Mobile Nokia Asha 501 端末上で稼働する Microsoft Asha OS におけるロック画面の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-6602 2014-09-24 16:43 2014-09-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291141 - ibm infosphere_biginsights Open redirect vulnerability in the Web Application Enterprise Console in IBM InfoSphere BigInsights 1.1 and 2.x before 2.1 FP2 allows remote authenticated users to redirect users to arbitrary web sit… CWE-20
 Improper Input Validation 
CVE-2013-3997 2024-11-21 10:54 2014-03-26 Show GitHub Exploit DB Packet Storm
291142 - ibm flashcopy_manager
tivoli_storage_manager_for_mail
data_protection
tivoli_storage_flashcopy_manager
The (1) Data Protection for Exchange component 6.1 before 6.1.3.4 and 6.3 before 6.3.1 in IBM Tivoli Storage Manager for Mail and the (2) FlashCopy Manager for Exchange component 2.2 and 3.1 before 3… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3976 2024-11-21 10:54 2014-03-26 Show GitHub Exploit DB Packet Storm
291143 - xnview xnview Integer overflow in xnview.exe in XnView 2.13 allows remote attackers to execute arbitrary code via a large NUM_ELEMENTS field in an IFD_ENTRY structure in a JXR file, which triggers a heap-based buf… CWE-189
Numeric Errors
CVE-2013-3938 2024-11-21 10:54 2014-03-19 Show GitHub Exploit DB Packet Storm
291144 - ibm infosphere_information_server Multiple cross-site scripting (XSS) vulnerabilities in IBM InfoSphere Information Server 8.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allow remote attackers to inject arbitra… CWE-79
Cross-site Scripting
CVE-2013-4059 2024-11-21 10:54 2014-03-16 Show GitHub Exploit DB Packet Storm
291145 - ibm infosphere_information_server Multiple SQL injection vulnerabilities in IBM InfoSphere Information Server 8.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allow remote authenticated users to execute arbitrary… CWE-89
SQL Injection
CVE-2013-4058 2024-11-21 10:54 2014-03-16 Show GitHub Exploit DB Packet Storm
291146 - ibm infosphere_information_server Cross-site request forgery (CSRF) vulnerability in the XML Pack in IBM InfoSphere Information Server 8.5.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allows remote attackers to… CWE-352
 Origin Validation Error
CVE-2013-4057 2024-11-21 10:54 2014-03-16 Show GitHub Exploit DB Packet Storm
291147 - kasseler-cms kasseler-cms Multiple cross-site request forgery (CSRF) vulnerabilities in Kasseler CMS before 2 r1232 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL injection… CWE-352
 Origin Validation Error
CVE-2013-3729 2024-11-21 10:54 2014-03-13 Show GitHub Exploit DB Packet Storm
291148 - kasseler-cms kasseler-cms Cross-site scripting (XSS) vulnerability in Kasseler CMS before 2 r1232 allows remote authenticated users with permissions to create categories to inject arbitrary web script or HTML via the cat para… CWE-79
Cross-site Scripting
CVE-2013-3728 2024-11-21 10:54 2014-03-13 Show GitHub Exploit DB Packet Storm
291149 - kasseler-cms kasseler-cms SQL injection vulnerability in Kasseler CMS before 2 r1232 allows remote authenticated users to execute arbitrary SQL commands via the groups[] parameter to admin.php. NOTE: this can be leveraged us… CWE-89
SQL Injection
CVE-2013-3727 2024-11-21 10:54 2014-03-13 Show GitHub Exploit DB Packet Storm
291150 - abeel simple_php_agenda SQL injection vulnerability in edit_event.php in Simple PHP Agenda before 2.2.9 allows remote authenticated users to execute arbitrary SQL commands via the eventid parameter. CWE-89
SQL Injection
CVE-2013-3961 2024-11-21 10:54 2014-03-12 Show GitHub Exploit DB Packet Storm