Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217691 3.5 注意 IBM - IBM Emptoris Sourcing Portfolio におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3033 2014-08-27 16:24 2014-08-12 Show GitHub Exploit DB Packet Storm
217692 2.6 注意 サン・マイクロシステムズ
Linux
IBM
ヒューレット・パッカード
- 複数の OS 上で稼動する IBM Tivoli Storage Manager for Space Management のバックアップ/アーカイブ・クライアントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6335 2014-08-27 16:23 2013-10-31 Show GitHub Exploit DB Packet Storm
217693 6.9 警告 OpenVPN Technologies - OpenVPN に同梱された PrivateTunnel の ptservice サービスにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2014-5455 2014-08-27 15:57 2014-07-11 Show GitHub Exploit DB Packet Storm
217694 6 警告 SAS - SAS Visual Analytics のイメージアップロードモジュールにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-5454 2014-08-27 15:26 2014-08-13 Show GitHub Exploit DB Packet Storm
217695 2.1 注意 Social Stats project - Drupal 用 Social Stats モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5456 2014-08-27 14:59 2014-08-19 Show GitHub Exploit DB Packet Storm
217696 7.2 危険 Ubisoft - Ubisoft Uplay PC における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5453 2014-08-27 14:22 2014-07-3 Show GitHub Exploit DB Packet Storm
217697 6.8 警告 innovaphone AG - innovaphone PBX におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5335 2014-08-27 13:58 2014-08-21 Show GitHub Exploit DB Packet Storm
217698 5 警告 Debian
Python Software Foundation
- Python Image Library および Pillow の PIL/IcnsImagePlugin.py におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3589 2014-08-27 12:25 2014-08-13 Show GitHub Exploit DB Packet Storm
217699 4.3 警告 Apache Software Foundation - Apache ActiveMQ の scheduled.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1879 2014-08-26 17:47 2013-03-21 Show GitHub Exploit DB Packet Storm
217700 7.1 危険 IBM - IBM GCM16 および GCM32 Global Console Manager スイッチのファームウェアの systest.php における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-3085 2014-08-26 17:42 2014-07-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297061 - pro-face pro-server_ex
wingp_pc_runtime
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to cause a denial of service (out-of-bounds read operation) via … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3792 2024-11-21 10:41 2012-06-26 Show GitHub Exploit DB Packet Storm
297062 - cms-center simple_web_content_management_system Multiple SQL injection vulnerabilities in Simple Web Content Management System 1.1 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) item_delete.php, (2) item_statu… CWE-89
SQL Injection
CVE-2012-3791 2024-11-21 10:41 2012-06-22 Show GitHub Exploit DB Packet Storm
297063 - adiscon loganalyzer Cross-site scripting (XSS) vulnerability in index.php in Adiscon LogAnalyzer before 3.4.4 and 3.5.x before 3.5.5 allows remote attackers to inject arbitrary web script or HTML via the highlight param… CWE-79
Cross-site Scripting
CVE-2012-3790 2024-11-21 10:41 2012-06-21 Show GitHub Exploit DB Packet Storm
297064 - wordpress plugin_newsletter_plugin Directory traversal vulnerability in preview.php in the Plugin Newsletter plugin 1.5 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the data parameter. CWE-22
Path Traversal
CVE-2012-3588 2024-11-21 10:41 2012-06-20 Show GitHub Exploit DB Packet Storm
297065 - debian advanced_package_tool APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attacker… CWE-20
 Improper Input Validation 
CVE-2012-3587 2024-11-21 10:41 2012-06-20 Show GitHub Exploit DB Packet Storm
297066 - digium asterisk chan_skinny.c in the Skinny (aka SCCP) channel driver in Asterisk Open Source 10.x before 10.5.1 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon cr… NVD-CWE-Other
CVE-2012-3553 2024-11-21 10:41 2012-06-20 Show GitHub Exploit DB Packet Storm
297067 - wordpress fcchat_widget Unrestricted file upload vulnerability in html/Upload.php in the FCChat Widget plugin 2.2.13.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with a f… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3578 2024-11-21 10:41 2012-06-17 Show GitHub Exploit DB Packet Storm
297068 - nmedia member_conversation Unrestricted file upload vulnerability in doupload.php in the Nmedia Member Conversation plugin before 1.4 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3577 2024-11-21 10:41 2012-06-17 Show GitHub Exploit DB Packet Storm
297069 - jquindlen wpstorecart Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3576 2024-11-21 10:41 2012-06-16 Show GitHub Exploit DB Packet Storm
297070 - rbx_gallery rbx_gallery Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3575 2024-11-21 10:41 2012-06-16 Show GitHub Exploit DB Packet Storm