Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217321 4.3 警告 ownCloud - ownCloud におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0201 2014-03-24 10:53 2013-01-22 Show GitHub Exploit DB Packet Storm
217322 4.3 警告 マカフィー
インテル
- 複数の McAfee 製品および Intel Expressway Cloud Access 360-SSO におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2536 2014-03-24 10:30 2014-03-19 Show GitHub Exploit DB Packet Storm
217323 4 警告 マカフィー - McAfee Web Gateway におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2535 2014-03-24 10:29 2014-01-28 Show GitHub Exploit DB Packet Storm
217324 7.8 危険 ソフォス - Sophos UTM のカーネルの TCP スタックにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-2537 2014-03-24 10:26 2014-02-20 Show GitHub Exploit DB Packet Storm
217325 4.3 警告 ソフォス - Sophos Web Appliance におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2643 2014-03-24 10:25 2013-04-3 Show GitHub Exploit DB Packet Storm
217326 9.3 危険 ソフォス - Sophos Web Appliance における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-2642 2014-03-24 10:25 2013-04-3 Show GitHub Exploit DB Packet Storm
217327 5 警告 ソフォス - Sophos Web Appliance の patience.cgi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2641 2014-03-24 10:24 2013-04-3 Show GitHub Exploit DB Packet Storm
217328 4.3 警告 Apache Software Foundation - Apache CouchDB の Futon UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5650 2014-03-20 19:21 2012-10-24 Show GitHub Exploit DB Packet Storm
217329 5 警告 Mochi Media
Apache Software Foundation
- Apache CouchDB で使用される MochiWeb の mochiweb_util.erl の partition2 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5641 2014-03-20 19:18 2012-12-14 Show GitHub Exploit DB Packet Storm
217330 5 警告 シスコシステムズ - Cisco Hosted Collaboration Solution の Impact サーバの GUI におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2122 2014-03-20 16:34 2014-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295041 - moodle moodle Moodle 2.0.x before 2.0.3 does not recognize the configuration setting that makes e-mail addresses visible only to course members, which allows remote authenticated users to obtain sensitive address … CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4289 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295042 - moodle moodle Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly implement associations between teachers and groups, which allows remote authenticated users to read quiz reports of arbitrary stude… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4288 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295043 - moodle moodle admin/uploaduser_form.php in Moodle 2.0.x before 2.0.3 does not force password changes for autosubscribed users, which makes it easier for remote attackers to obtain access by leveraging knowledge of… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4287 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295044 - moodle moodle Multiple cross-site scripting (XSS) vulnerabilities in the media-filter implementation in filter/mediaplugin/filter.php in Moodle 1.9.x before 1.9.11 and 2.0.x before 2.0.2 allow remote attackers to … CWE-79
Cross-site Scripting
CVE-2011-4286 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295045 - moodle moodle The default configuration of Moodle 2.0.x before 2.0.2 has an incorrect setting of the moodle/course:delete capability, which allows remote authenticated users to delete arbitrary courses by leveragi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4285 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295046 - moodle moodle Moodle 2.0.x before 2.0.2 allows remote attackers to obtain sensitive information from a myprofile (aka My profile) block by visiting a user-context page. CWE-200
Information Exposure
CVE-2011-4284 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295047 - moodle moodle Moodle 1.9.x before 1.9.11 and 2.0.x before 2.0.2 places an IMS enterprise enrolment file in the course-files area, which allows remote attackers to obtain sensitive information via a request for ims… CWE-200
Information Exposure
CVE-2011-4283 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295048 - moodle moodle Multiple cross-site scripting (XSS) vulnerabilities in the course-tags functionality in tag/coursetags_more.php in Moodle 2.0.x before 2.0.2 allow remote attackers to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2011-4282 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295049 - moodle moodle Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 2.0.x before 2.0.2 allow remote attackers to hijack the authentication of arbitrary users for requests that mark the completion of… CWE-352
 Origin Validation Error
CVE-2011-4281 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295050 - moodle
nimish_pachapurkar
moodle
spike_phpcoverage
Cross-site scripting (XSS) vulnerability in the Spike PHPCoverage (aka spikephpcoverage) library, as used in Moodle 2.0.x before 2.0.2 and other products, allows remote attackers to inject arbitrary … CWE-79
Cross-site Scripting
CVE-2011-4280 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm