Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217901 10 危険 チェック・ポイント・ソフトウェア・テクノロジーズ - Check Point Security Gateway における脆弱性 CWE-noinfo
情報不足
CVE-2013-7350 2014-04-2 17:41 2014-01-29 Show GitHub Exploit DB Packet Storm
217902 4.3 警告 Pearson Education, Inc. - Pearson eSIS にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1942 2014-04-2 17:15 2014-04-1 Show GitHub Exploit DB Packet Storm
217903 7.5 危険 DELL EMC (旧 EMC Corporation) - EMC VPLEX GeoSynchrony における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2014-0635 2014-04-2 17:09 2014-03-26 Show GitHub Exploit DB Packet Storm
217904 6 警告 DELL EMC (旧 EMC Corporation) - EMC VPLEX GeoSynchrony における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0634 2014-04-2 17:08 2014-03-26 Show GitHub Exploit DB Packet Storm
217905 7.7 危険 DELL EMC (旧 EMC Corporation) - EMC VPLEX GeoSynchrony の GUI における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0633 2014-04-2 17:07 2014-03-26 Show GitHub Exploit DB Packet Storm
217906 9 危険 DELL EMC (旧 EMC Corporation) - EMC VPLEX GeoSynchrony におけるディレクトリトラバーサルの脆弱性 - CVE-2014-0632 2014-04-2 17:07 2014-03-26 Show GitHub Exploit DB Packet Storm
217907 4 警告 Fabrice Bellard
Xen プロジェクト
レッドハット
- QEMU の SCSI サブシステムの hw/scsi-disk.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3346 2014-04-2 16:16 2011-09-16 Show GitHub Exploit DB Packet Storm
217908 5 警告 シーメンス - Siemens RuggedCom ROS の Web 管理インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2590 2014-04-2 15:56 2014-03-28 Show GitHub Exploit DB Packet Storm
217909 7.5 危険 Raoul Proenca - Gnew における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7349 2014-04-2 15:42 2013-10-2 Show GitHub Exploit DB Packet Storm
217910 7.5 危険 Raoul Proenca - Gnew における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5640 2014-04-2 15:42 2013-10-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296371 - obm open_business_management Multiple cross-site scripting (XSS) vulnerabilities in Open Business Management (OBM) 2.4.0-rc13 and probably earlier allow remote attackers to inject arbitrary web script or HTML via the (1) tf_dele… CWE-79
Cross-site Scripting
CVE-2011-5142 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296372 - obm open_business_management Directory traversal vulnerability in exportcsv/exportcsv_index.php in Open Business Management (OBM) 2.4.0-rc13 and earlier allows remote authenticated users to include and execute arbitrary local fi… CWE-22
Path Traversal
CVE-2011-5141 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296373 - diy-cms blog Multiple SQL injection vulnerabilities in the blog module 1.0 for DiY-CMS allow remote attackers to execute arbitrary SQL commands via the (1) start parameter to (a) tags.php, (b) list.php, (c) index… CWE-89
SQL Injection
CVE-2011-5140 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296374 - preprojects business_cards_designer SQL injection vulnerability in page.php in Pre Studio Business Cards Designer allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2011-5139 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296375 - tforum tforum Cross-site scripting (XSS) vulnerability in member.php in tForum b0.915 allows remote attackers to inject arbitrary web script or HTML via the username parameter in a viewprofile action. CWE-79
Cross-site Scripting
CVE-2011-5138 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296376 - tforum tforum Multiple SQL injection vulnerabilities in tForum b0.915 allow remote attackers to execute arbitrary SQL commands via the (1) TopicID parameter to viewtopic.php, the (2) BoardID parameter to viewboard… CWE-89
SQL Injection
CVE-2011-5137 2024-11-21 10:33 2012-09-1 Show GitHub Exploit DB Packet Storm
296377 - epractizelabs subscription_manager showImg.php in EPractize Labs Subscription Manager, possibly 1.0, allows remote attackers to overwrite arbitrary files via the db parameter. CWE-20
 Improper Input Validation 
CVE-2011-5136 2024-11-21 10:33 2012-08-31 Show GitHub Exploit DB Packet Storm
296378 - docebo docebolms Multiple SQL injection vulnerabilities in the save_connection function in lib/lib.iotask.php in the iotask module in DoceboLMS 4.0.4 and earlier allow remote authenticated users with admin or teacher… CWE-89
SQL Injection
CVE-2011-5135 2024-11-21 10:33 2012-08-31 Show GitHub Exploit DB Packet Storm
296379 - widgetfactorylimited com_jce Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the JCE component before 2.0.18 for Joomla! allows remote authenticated users with the author privileges to execute arb… NVD-CWE-Other
CVE-2011-5134 2024-11-21 10:33 2012-08-31 Show GitHub Exploit DB Packet Storm
296380 - mybb mybb Unspecified vulnerability in MyBB before 1.6.5 has unknown impact and attack vectors, related to an "unparsed user avatar in the buddy list." NVD-CWE-noinfo
CVE-2011-5133 2024-11-21 10:33 2012-08-31 Show GitHub Exploit DB Packet Storm