Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217841 9.3 危険 シスコシステムズ - Cisco UCS Director における管理アクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0709 2014-03-10 16:17 2014-02-19 Show GitHub Exploit DB Packet Storm
217842 4.3 警告 Mozilla Foundation - Mozilla Firefox および SeaMonkey におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5612 2014-03-10 15:44 2013-12-10 Show GitHub Exploit DB Packet Storm
217843 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-5609 2014-03-10 15:41 2013-12-10 Show GitHub Exploit DB Packet Storm
217844 7.5 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey で使用される Mozilla Netscape Portable Runtime における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-5607 2014-03-10 15:32 2013-11-15 Show GitHub Exploit DB Packet Storm
217845 6.5 警告 サイボウズ - サイボウズ ガルーンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-0821 2014-03-10 15:13 2014-02-26 Show GitHub Exploit DB Packet Storm
217846 6.8 警告 Lothian Buses - Android 用 Edinburgh by Bus アプリケーションにおける任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1886 2014-03-10 15:13 2014-02-7 Show GitHub Exploit DB Packet Storm
217847 4.3 警告 VideoLAN - VideoLAN VLC media player の ASF デマルチプレクサの modules/demux/asf/libasf.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-1684 2014-03-10 15:13 2014-01-27 Show GitHub Exploit DB Packet Storm
217848 2.1 注意 Jordy Meow - WordPress 用 Media File Renamer プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2040 2014-03-10 15:12 2014-01-31 Show GitHub Exploit DB Packet Storm
217849 5.8 警告 GNU Project - GnuTLS の lib/x509/verify.c における制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1959 2014-03-10 14:17 2014-02-12 Show GitHub Exploit DB Packet Storm
217850 5.8 警告 GNU Project - GnuTLS における制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-5138 2014-03-10 14:16 2009-01-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292621 - realnetworks helix_server
helix_mobile_server
Cross-site request forgery (CSRF) vulnerability in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to hijack the authentication of administrators for requ… CWE-352
 Origin Validation Error
CVE-2012-1985 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292622 - realnetworks helix_server
helix_mobile_server
Multiple cross-site scripting (XSS) vulnerabilities in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allow remote attackers to inject arbitrary web script or HTML via unspecifi… CWE-79
Cross-site Scripting
CVE-2012-1984 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292623 - realnetworks helix_server
helix_mobile_server
RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x store passwords in cleartext under adm_b_db\users\, which allows local users to obtain sensitive information by reading a database. CWE-310
Cryptographic Issues
CVE-2012-1923 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
292624 - cloudera cloudera_manager
cloudera_service_and_configuration_manager
Cloudera Manager 3.7.x before 3.7.5 and Service and Configuration Manager 3.5, when Kerberos is not enabled, does not properly install taskcontroller.cfg, which allows remote authenticated users to i… CWE-310
Cryptographic Issues
CVE-2012-2230 2024-11-21 10:38 2012-04-12 Show GitHub Exploit DB Packet Storm
292625 - 360zip 360zip 360zip 1.93beta allows remote attackers to execute arbitrary code via vectors related to file browsing and file extraction. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2225 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292626 - xunlei thunder Xunlei Thunder before 7.2.6 allows remote attackers to execute arbitrary code via a crafted file, related to a "DLL injection vulnerability." CWE-94
Code Injection
CVE-2012-2224 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292627 - novell zenworks_configuration_management The xplat agent in Novell ZENworks Configuration Management (ZCM) 10.3.x before 10.3.4 and 11.x before 11.2 enables the HTTP TRACE method, which might make it easier for remote attackers to conduct c… CWE-200
Information Exposure
CVE-2012-2223 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292628 - sony bravia_tv The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TCP SYN packets, as demonstrated by hping, a related issue to… CWE-399
 Resource Management Errors
CVE-2012-2210 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292629 - plume-cms plume_cms Multiple cross-site scripting (XSS) vulnerabilities in Plume CMS 1.2.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the u_email parameter (aka Authors Email field… CWE-79
Cross-site Scripting
CVE-2012-2156 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
292630 - cmsmadesimple cms_made_simple Cross-site scripting (XSS) vulnerability in admin/edituser.php in CMS Made Simple 1.10.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter (aka the Em… CWE-79
Cross-site Scripting
CVE-2012-1992 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm