Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217291 3.5 注意 Drupal - Drupal 用 Context Form Alteration モジュールの設定 UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7869 2014-10-8 14:29 2014-04-29 Show GitHub Exploit DB Packet Storm
217292 4.3 警告 LibVNC - LibVNCServer の libvncserver/rfbserver.c の rfbProcessClientNormalMessage 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-6054 2014-10-8 14:28 2014-08-18 Show GitHub Exploit DB Packet Storm
217293 6.5 警告 レッドハット - Red Hat CloudForms Management Engine の vmdb/app/controllers/application_controller/performance.rb における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3642 2014-10-8 14:19 2014-10-2 Show GitHub Exploit DB Packet Storm
217294 4 警告 レッドハット - Red Hat CloudForms Management Engine における重要なコントローラおよびアクションにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0140 2014-10-8 14:19 2014-10-2 Show GitHub Exploit DB Packet Storm
217295 5.5 警告 レッドハット - Red Hat Conga の /luci/homebase および /luci/cluster メニューのコンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3521 2014-10-8 14:19 2014-09-16 Show GitHub Exploit DB Packet Storm
217296 5 警告 レッドハット - Red Hat Conga における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-6496 2014-10-8 14:18 2013-06-6 Show GitHub Exploit DB Packet Storm
217297 7.5 危険 Rejetto - Rejetto HFS (HTTP File Server) に null バイトの取扱いに関する脆弱性 CWE-94
CWE-Other
CVE-2014-6287 2014-10-8 13:44 2014-10-6 Show GitHub Exploit DB Packet Storm
217298 6.4 警告 ヒューレット・パッカード - HP System Management Homepage におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2640 2014-10-7 18:17 2014-09-30 Show GitHub Exploit DB Packet Storm
217299 4.3 警告 Jan Bartels - TYPO3 用 WEC Map エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6296 2014-10-7 18:16 2014-02-12 Show GitHub Exploit DB Packet Storm
217300 6.8 警告 Mittwald CM Service - TYPO3 用 mm_forum エクステンションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-6299 2014-10-7 18:02 2014-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297131 - hp xp_p9000_command_view_advanced_edition Unspecified vulnerability in Device Manager in HP XP P9000 Command View Advanced Edition before 7.4.0-00 allows remote attackers to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2012-3281 2024-11-21 10:40 2013-02-6 Show GitHub Exploit DB Packet Storm
297132 - hp network_node_manager_i Multiple cross-site scripting (XSS) vulnerabilities in HP Network Node Manager i (NNMi) 8.x, 9.0x, 9.1x, and 9.20 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-3279 2024-11-21 10:40 2013-02-6 Show GitHub Exploit DB Packet Storm
297133 - redhat jboss_enterprise_application_platform
jboss_enterprise_web_platform
jboss_enterprise_brms_platform
The SecurityAssociation.getCredential method in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 re… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3370 2024-11-21 10:40 2013-02-6 Show GitHub Exploit DB Packet Storm
297134 - redhat jboss_enterprise_web_platform
jboss_enterprise_application_platform
jboss_enterprise_brms_platform
The CallerIdentityLoginModule in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 allows remote att… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3369 2024-11-21 10:40 2013-02-6 Show GitHub Exploit DB Packet Storm
297135 - oracle
sun
jre
jdk
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, a… NVD-CWE-noinfo
CVE-2012-3342 2024-11-21 10:40 2013-02-2 Show GitHub Exploit DB Packet Storm
297136 - oracle
sun
jre
jdk
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, a… NVD-CWE-noinfo
CVE-2012-3213 2024-11-21 10:40 2013-02-2 Show GitHub Exploit DB Packet Storm
297137 - hp
huawei
3cr17161-91
jg091a
jd249a
jc613a
jc611a
jc612a
jc748a
jc635a
jc652a
jc086a
jf431a
jf431c
jr431b
jc653a
juc653a
jc085a
jf430a
jf430c
jr430b
je0…
Certain HP Access Controller, Fabric Module, Firewall, Router, Switch, and UTM Appliance products; certain HP 3Com Access Controller, Router, and Switch products; certain HP H3C Access Controller, Fi… CWE-522
 Insufficiently Protected Credentials
CVE-2012-3268 2024-11-21 10:40 2013-02-1 Show GitHub Exploit DB Packet Storm
297138 - hp diagnostics_server Stack-based buffer overflow in magentservice.exe in HP Diagnostics Server 8.x through 8.07 and 9.x through 9.21 allows remote attackers to execute arbitrary code via a malformed message packet. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3278 2024-11-21 10:40 2013-01-26 Show GitHub Exploit DB Packet Storm
297139 - linux linux_kernel Multiple stack-based buffer overflows in the Near Field Communication Controller Interface (NCI) in the Linux kernel before 3.4.5 allow remote attackers to cause a denial of service (crash) and possi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3364 2024-11-21 10:40 2013-01-23 Show GitHub Exploit DB Packet Storm
297140 - ibm tivoli_federated_identity_manager IBM Tivoli Federated Identity Manager (TFIM) before 6.1.1.14, 6.2.0 before 6.2.0.12, and 6.2.1 before 6.2.1.4 allows context-dependent attackers to discover (1) a cleartext LDAP Bind Password, (2) ke… CWE-255
Credentials Management
CVE-2012-3310 2024-11-21 10:40 2013-01-18 Show GitHub Exploit DB Packet Storm