Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217841 4.6 警告 シーメンス - Siemens SIMATIC PCS 7 などの製品で使用される SIMATIC WinCC における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4685 2014-08-5 09:25 2014-07-23 Show GitHub Exploit DB Packet Storm
217842 6 警告 シーメンス - Siemens SIMATIC PCS 7 などの製品で使用される SIMATIC WinCC の データベースサーバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4684 2014-08-5 09:25 2014-07-23 Show GitHub Exploit DB Packet Storm
217843 4.9 警告 シーメンス - Siemens SIMATIC PCS 7 などの製品で使用される SIMATIC WinCC の WebNavigator サーバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4683 2014-08-5 09:25 2014-07-23 Show GitHub Exploit DB Packet Storm
217844 5 警告 シーメンス - Siemens SIMATIC PCS 7 などの製品で使用される SIMATIC WinCC の WebNavigator サーバにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4682 2014-08-5 09:24 2014-07-23 Show GitHub Exploit DB Packet Storm
217845 7.2 危険 Android for MSM - MSM デバイスなどの製品用の Qualcomm Innovation Center Android コントリビューションで使用される Linux Kernel 用 kgsl グラフィックドライバにおけるカスタムページテーブルを選択される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0972 2014-08-4 18:17 2014-06-23 Show GitHub Exploit DB Packet Storm
217846 5.8 警告 シスコシステムズ - Cisco WebEx Meetings Server の user.php における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2014-3302 2014-08-4 17:04 2014-07-25 Show GitHub Exploit DB Packet Storm
217847 3.5 注意 IBM - IBM InfoSphere Master Data Management - Collaborative Edition および InfoSphere Master Data Management Server for Product Information Management におけるフィッシング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-3009 2014-08-4 16:56 2014-06-24 Show GitHub Exploit DB Packet Storm
217848 5.2 警告 ヒューレット・パッカード - HP NonStop NetBatch における NetBatch ジョブ実行に対する権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-2627 2014-08-4 16:55 2014-07-30 Show GitHub Exploit DB Packet Storm
217849 7.2 危険 Linux - s390 プラットフォーム上で稼働する Linux Kernel の arch/s390/kernel/ptrace.c におけるカーネルメモリ領域への読み込みおよび書き込みアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3534 2014-08-4 16:04 2014-07-31 Show GitHub Exploit DB Packet Storm
217850 6 警告 SAP - SAP FI Manager Self-Service におけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2014-5176 2014-08-4 13:44 2014-04-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346351 - oracle application_server
collaboration_suite
e-business_suite
enterprise_manager
enterprise_manager_database_control
enterprise_manager_grid_control
oracle10g
oracle8i
oracle9i
Multiple SQL injection vulnerabilities in PL/SQL procedures that run with definer rights in Oracle 9i and 10g allow remote attackers to execute arbitrary SQL commands and gain privileges via (1) DBMS… NVD-CWE-Other
CVE-2004-1370 2017-07-11 10:30 2004-08-4 Show GitHub Exploit DB Packet Storm
346352 - oracle application_server
collaboration_suite
database_server
e-business_suite
enterprise_manager
enterprise_manager_database_control
enterprise_manager_grid_control
oracle10g
oracle…
Stack-based buffer overflow in Oracle 9i and 10g allows remote attackers to execute arbitrary code via a long token in the text of a wrapped procedure. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2004-1371 2017-07-11 10:30 2004-08-4 Show GitHub Exploit DB Packet Storm
346353 - ibm db2_universal_database Multiple stack-based buffer overflows in IBM DB2 7.x and 8.1 allow local users to execute arbitrary code via (1) a long third argument to the rec2xml function or (2) a long filename argument to the g… NVD-CWE-Other
CVE-2004-1372 2017-07-11 10:30 2004-09-1 Show GitHub Exploit DB Packet Storm
346354 - nullsoft shoutcast_server Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as de… NVD-CWE-Other
CVE-2004-1373 2017-07-11 10:30 2004-12-23 Show GitHub Exploit DB Packet Storm
346355 - gnu
turbolinux
a2ps
turbolinux_home
turbolinux_server
turbolinux_workstation
The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files. NVD-CWE-Other
CVE-2004-1377 2017-07-11 10:30 2004-12-27 Show GitHub Exploit DB Packet Storm
346356 - jabberstudio jabberd
jadc2s
The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (… NVD-CWE-Other
CVE-2004-1378 2017-07-11 10:30 2004-09-21 Show GitHub Exploit DB Packet Storm
346357 - xine xine
xine-lib
Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to execute arbitrary code via a (1) DVD or (2) MPEG subpicture header where the sec… NVD-CWE-Other
CVE-2004-1379 2017-07-11 10:30 2004-09-16 Show GitHub Exploit DB Packet Storm
346358 - phpgroupware phpgroupware Multiple SQL injection vulnerabilities in phpGroupWare 0.9.16.003 and earlier allow remote attackers to execute arbitrary SQL statements via the (1) order, (2) project_id, (3) pro_main, or (4) hours_… NVD-CWE-Other
CVE-2004-1383 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
346359 - phpgroupware phpgroupware Multiple cross-site scripting (XSS) vulnerabilities in phpGroupWare 0.9.16.003 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) kp3, (2) type, (3) msg, (4) forum_… NVD-CWE-Other
CVE-2004-1384 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
346360 - phpgroupware phpgroupware phpGroupWare 0.9.16.003 and earlier allows remote attackers to gain sensitive information via (1) unexpected characters in the session ID such as shell metacharacters, (2) an invalid appname paramete… NVD-CWE-Other
CVE-2004-1385 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm