Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217671 6.8 警告 Gentoo Linux - Xdg-utils における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0386 2014-03-5 17:22 2008-01-30 Show GitHub Exploit DB Packet Storm
217672 6.8 警告 Google - Android OS において任意の Java のメソッドが実行される脆弱性 CWE-DesignError
CVE-2013-4710 2014-03-5 17:21 2013-12-17 Show GitHub Exploit DB Packet Storm
217673 6 警告 シスコシステムズ - Cisco Unified Communications Manager における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0686 2014-03-5 17:20 2014-02-3 Show GitHub Exploit DB Packet Storm
217674 4.3 警告 AITpro - WordPress 用 BulletProof Security プラグインのセキュリティログにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3487 2014-03-5 17:14 2013-08-1 Show GitHub Exploit DB Packet Storm
217675 4.3 警告 Andy Bailey - WordPress 用 CommentLuv プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1409 2014-03-5 17:13 2013-02-6 Show GitHub Exploit DB Packet Storm
217676 4.3 警告 アイファイ - Eye-Fi Helper におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4696 2014-03-5 16:56 2011-11-17 Show GitHub Exploit DB Packet Storm
217677 4.3 警告 DrinkedIn - Android 用 DrinkedIn BarFinder アプリケーションにおける任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1887 2014-03-5 16:42 2014-02-7 Show GitHub Exploit DB Packet Storm
217678 6.4 警告 HS Group - Android 用 ForzeArmate アプリケーションにおける任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1885 2014-03-5 16:40 2014-02-7 Show GitHub Exploit DB Packet Storm
217679 7.5 危険 Google - Android の java/android/webkit/BrowserFrame.java における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1939 2014-03-5 15:59 2014-02-10 Show GitHub Exploit DB Packet Storm
217680 9 危険 AVTECH - AVTECH AVN801 DVR のファームウェアの cgi-bin/user/Config.cgi におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4981 2014-03-5 14:46 2013-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293041 - ibm infosphere_information_server
infosphere_information_server_information_services_framework
Information Services Framework (ISF) in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 does not properly determine authorization, which allows remote authenticated users to gain privi… CWE-287
Improper Authentication
CVE-2012-0702 2024-11-21 10:35 2013-01-31 Show GitHub Exploit DB Packet Storm
293042 - ibm infosphere_information_server
infosphere_datastage
The client applications in the DataStage Administrator client in InfoSphere DataStage in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 rely on client-side access control, which allow… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0701 2024-11-21 10:35 2013-01-31 Show GitHub Exploit DB Packet Storm
293043 - ibm infosphere_fasttrack
infosphere_information_server
The client in InfoSphere FastTrack 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 does not properly store credentials, which allows local users to bypass intended a… CWE-255
Credentials Management
CVE-2012-0700 2024-11-21 10:35 2013-01-31 Show GitHub Exploit DB Packet Storm
293044 - oracle
mariadb
canonical
mysql
mariadb
ubuntu_linux
Unspecified vulnerability in the Server component in Oracle MySQL 5.5.28 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer. NVD-CWE-noinfo
CVE-2012-0578 2024-11-21 10:35 2013-01-17 Show GitHub Exploit DB Packet Storm
293045 - oracle
mariadb
canonical
redhat
mysql
mariadb
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_eus
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.5.28 and earlier, allows remote authenticated users to affect availability via unknown vectors. NVD-CWE-noinfo
CVE-2012-0574 2024-11-21 10:35 2013-01-17 Show GitHub Exploit DB Packet Storm
293046 - oracle
mariadb
canonical
redhat
mysql
mariadb
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_eus
Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier and 5.5.28 and earlier allows remote authenticated users to affect availability via unknown vectors related to Inn… NVD-CWE-noinfo
CVE-2012-0572 2024-11-21 10:35 2013-01-17 Show GitHub Exploit DB Packet Storm
293047 - xerox
sun
freeflow_print_server
sunos
Unspecified vulnerability Oracle Sun Solaris 10 allows local users to affect confidentiality and integrity via unknown vectors related to Install/smpatch. NVD-CWE-noinfo
CVE-2012-0569 2024-11-21 10:35 2013-01-17 Show GitHub Exploit DB Packet Storm
293048 - redhat enterprise_virtualization_manager The vds_installer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when adding a host, uses the -k curl parameter when downloading deployUtil.py and vds_bootstrap.py, which prevents … CWE-310
Cryptographic Issues
CVE-2012-0861 2024-11-21 10:35 2013-01-5 Show GitHub Exploit DB Packet Storm
293049 - redhat enterprise_virtualization_manager Multiple untrusted search path vulnerabilities in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when adding a host, allow local users to gain privileges via a Trojan horse (1) deploy… NVD-CWE-Other
CVE-2012-0860 2024-11-21 10:35 2013-01-5 Show GitHub Exploit DB Packet Storm
293050 - ibm security_appscan
rational_policy_tester
IBM Security AppScan Enterprise before 8.6.0.2 and Rational Policy Tester before 8.5.0.3 do not validate X.509 certificates during use of the Manual Explore Proxy feature, which allows man-in-the-mid… CWE-20
 Improper Input Validation 
CVE-2012-0741 2024-11-21 10:35 2012-12-28 Show GitHub Exploit DB Packet Storm