Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217441 5.8 警告 アップル - Apple iOS および Apple TV の構成プロファイルコンポーネントにおけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2014-1267 2014-03-17 16:08 2014-03-10 Show GitHub Exploit DB Packet Storm
217442 8.8 危険 アップル - Apple iOS のバックアップにおけるリストア操作中にファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5133 2014-03-17 16:08 2014-03-10 Show GitHub Exploit DB Packet Storm
217443 6.8 警告 Schneider Electric - Schneider Electric StruxureWare SCADA Expert ClearSCADA の Kepware KepServerEX 4 コンポーネントの ServerMain.exe 内の PLC ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-0779 2014-03-17 15:38 2014-01-24 Show GitHub Exploit DB Packet Storm
217444 5 警告 シスコシステムズ - Cisco Cloud Portal の Intelligent Automation for Cloud における平文データを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0694 2014-03-17 15:37 2014-03-12 Show GitHub Exploit DB Packet Storm
217445 5.8 警告 Samba Project - Samba の smbcacls の smbcacls.c 内の owner_set 関数におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6442 2014-03-17 15:11 2013-11-4 Show GitHub Exploit DB Packet Storm
217446 10 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-0505 2014-03-17 13:40 2014-03-13 Show GitHub Exploit DB Packet Storm
217447 5 警告 ConeXware, Inc. - ConeXware PowerArchiver の Encrypt Files 機能における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2014-2319 2014-03-17 12:34 2014-03-12 Show GitHub Exploit DB Packet Storm
217448 4.3 警告 ヒューレット・パッカード - HP-UX の NFS サブシステムの rpc.lockd におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-6209 2014-03-17 12:19 2013-10-21 Show GitHub Exploit DB Packet Storm
217449 9 危険 ヒューレット・パッカード - HP Rapid Deployment Pack および Insight Control Server Deployment における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-6206 2014-03-17 12:18 2013-10-21 Show GitHub Exploit DB Packet Storm
217450 4.1 警告 ヒューレット・パッカード - HP Rapid Deployment Pack および Insight Control Server Deployment における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-6205 2014-03-17 12:18 2013-10-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292711 - realnetworks helix_server
helix_mobile_server
Cross-site request forgery (CSRF) vulnerability in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to hijack the authentication of administrators for requ… CWE-352
 Origin Validation Error
CVE-2012-1985 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292712 - realnetworks helix_server
helix_mobile_server
Multiple cross-site scripting (XSS) vulnerabilities in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allow remote attackers to inject arbitrary web script or HTML via unspecifi… CWE-79
Cross-site Scripting
CVE-2012-1984 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292713 - realnetworks helix_server
helix_mobile_server
RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x store passwords in cleartext under adm_b_db\users\, which allows local users to obtain sensitive information by reading a database. CWE-310
Cryptographic Issues
CVE-2012-1923 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292714 - cloudera cloudera_manager
cloudera_service_and_configuration_manager
Cloudera Manager 3.7.x before 3.7.5 and Service and Configuration Manager 3.5, when Kerberos is not enabled, does not properly install taskcontroller.cfg, which allows remote authenticated users to i… CWE-310
Cryptographic Issues
CVE-2012-2230 2024-11-21 10:38 2012-04-12 Show GitHub Exploit DB Packet Storm
292715 - 360zip 360zip 360zip 1.93beta allows remote attackers to execute arbitrary code via vectors related to file browsing and file extraction. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2225 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292716 - xunlei thunder Xunlei Thunder before 7.2.6 allows remote attackers to execute arbitrary code via a crafted file, related to a "DLL injection vulnerability." CWE-94
Code Injection
CVE-2012-2224 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292717 - novell zenworks_configuration_management The xplat agent in Novell ZENworks Configuration Management (ZCM) 10.3.x before 10.3.4 and 11.x before 11.2 enables the HTTP TRACE method, which might make it easier for remote attackers to conduct c… CWE-200
Information Exposure
CVE-2012-2223 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292718 - sony bravia_tv The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TCP SYN packets, as demonstrated by hping, a related issue to… CWE-399
 Resource Management Errors
CVE-2012-2210 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292719 - plume-cms plume_cms Multiple cross-site scripting (XSS) vulnerabilities in Plume CMS 1.2.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the u_email parameter (aka Authors Email field… CWE-79
Cross-site Scripting
CVE-2012-2156 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292720 - cmsmadesimple cms_made_simple Cross-site scripting (XSS) vulnerability in admin/edituser.php in CMS Made Simple 1.10.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter (aka the Em… CWE-79
Cross-site Scripting
CVE-2012-1992 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm