Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217941 7.5 危険 アドビシステムズ
Apache Software Foundation
- Windows Phone 7 および 8 上で稼働する Apache Cordova および Adobe PhoneGap におけるデバイスリソース制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1884 2014-03-4 19:45 2014-01-24 Show GitHub Exploit DB Packet Storm
217942 7.5 危険 アドビシステムズ - Android 上で稼働する Adobe PhoneGap におけるデバイスリソース制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1883 2014-03-4 19:41 2014-01-24 Show GitHub Exploit DB Packet Storm
217943 7.5 危険 アドビシステムズ
Apache Software Foundation
- Apache Cordova および Adobe PhoneGap におけるイベントベースのブリッジのデバイスリソース制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1882 2014-03-4 19:38 2014-01-24 Show GitHub Exploit DB Packet Storm
217944 7.5 危険 アドビシステムズ
Apache Software Foundation
- Apache Cordova および Adobe PhoneGap におけるイベントベースのブリッジのデバイスリソース制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1881 2014-03-4 19:32 2014-01-24 Show GitHub Exploit DB Packet Storm
217945 7.5 危険 アドビシステムズ
Apache Software Foundation
- Apache Cordova および Adobe PhoneGap におけるホワイトリスト保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2012-6637 2014-03-4 19:07 2012-04-30 Show GitHub Exploit DB Packet Storm
217946 5 警告 PNG Development Group - libpng におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
CWE-Other
CVE-2014-0333 2014-03-4 18:16 2014-02-25 Show GitHub Exploit DB Packet Storm
217947 6.8 警告 Google - Android API における Java オブジェクトの任意のメソッドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6636 2014-03-4 17:49 2014-02-7 Show GitHub Exploit DB Packet Storm
217948 4.3 警告 MediaWiki - MediaWiki の includes/api/ApiFormatBase.php の formatHTML 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2244 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
217949 5.8 警告 MediaWiki - MediaWiki の includes/User.php におけるアクセス権を取得される脆弱性 CWE-362
競合状態
CVE-2014-2243 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
217950 4.3 警告 MediaWiki - MediaWiki の includes/upload/UploadBase.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2242 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295471 - cisco small_business_srp521w
small_business_srp526w
small_business_srp527w
small_business_srp520_series_firmware
small_business_srp541w
small_business_srp546w
small_business_srp547w
sm…
Cross-site request forgery (CSRF) vulnerability in the Services Ready Platform Configuration Utility web interface on the Cisco Small Business SRP521W, SRP526W, and SRP527W with firmware before 1.1.2… CWE-352
 Origin Validation Error
CVE-2011-4005 2024-11-21 10:31 2011-11-3 Show GitHub Exploit DB Packet Storm
295472 - phpldapadmin_project phpldapadmin The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a query_engine act… CWE-94
Code Injection
CVE-2011-4075 2024-11-21 10:31 2011-11-3 Show GitHub Exploit DB Packet Storm
295473 - phpldapadmin_project phpldapadmin Cross-site scripting (XSS) vulnerability in cmd.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via an _debug command. CWE-79
Cross-site Scripting
CVE-2011-4074 2024-11-21 10:31 2011-11-3 Show GitHub Exploit DB Packet Storm
295474 - phpmyadmin phpmyadmin Cross-site scripting (XSS) vulnerability in the setup interface in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to inject arbitrary web script or HTML via a crafted value. CWE-79
Cross-site Scripting
CVE-2011-4064 2024-11-21 10:31 2011-11-2 Show GitHub Exploit DB Packet Storm
295475 - cisco webex_recording_format_player Buffer overflow in the ATAS32 processing functionality in the Cisco WebEx Recording Format (WRF) player T26 before SP49 EP40 and T27 before SP28 allows remote attackers to execute arbitrary code via … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4004 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
295476 - openldap openldap Off-by-one error in the UTF8StringNormalize function in OpenLDAP 2.4.26 and earlier allows remote attackers to cause a denial of service (slapd crash) via a zero-length string that triggers a heap-ba… CWE-189
Numeric Errors
CVE-2011-4079 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
295477 - puppetlabs
puppet
puppet
puppet_enterprise_users
puppet_enterprise
Puppet 2.6.x before 2.6.12 and 2.7.x before 2.7.6, and Puppet Enterprise (PE) Users 1.0, 1.1, and 1.2 before 1.2.4, when signing an agent certificate, adds the Puppet master's certdnsnames values to … CWE-20
 Improper Input Validation 
CVE-2011-3872 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
295478 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x, when running in --edit mode, uses a predictable file name, which allows local users to run arbitrary Puppet code or trick a user into editi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3871 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
295479 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to modify the permissions of arbitrary files via a symlink attack on the SSH authorized_keys file. CWE-59
Link Following
CVE-2011-3870 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm
295480 - puppetlabs
puppet
puppet Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to overwrite arbitrary files via a symlink attack on the .k5login file. CWE-59
Link Following
CVE-2011-3869 2024-11-21 10:31 2011-10-28 Show GitHub Exploit DB Packet Storm