Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217981 5 警告 Nagios Enterprises, LLC
The Icinga Project
- Nagios Core および Icinga の cgi/cmd.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1878 2014-03-3 17:53 2014-02-11 Show GitHub Exploit DB Packet Storm
217982 4.3 警告 synetics - synetics i-doit pro の API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2231 2014-03-3 16:50 2014-02-14 Show GitHub Exploit DB Packet Storm
217983 7.5 危険 AdRotate Plugin - WordPress 用 AdRotate プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1854 2014-03-3 16:34 2014-01-31 Show GitHub Exploit DB Packet Storm
217984 4.3 警告 InterWorx - InterWorx Web Control Panel の xhr.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2035 2014-03-3 16:32 2014-02-19 Show GitHub Exploit DB Packet Storm
217985 6.8 警告 シスコシステムズ - Cisco Intrusion Prevention System ソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2103 2014-03-3 16:23 2014-02-27 Show GitHub Exploit DB Packet Storm
217986 9 危険 シスコシステムズ - Cisco Prime Infrastructure における root 権限で任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0679 2014-03-3 16:22 2014-02-26 Show GitHub Exploit DB Packet Storm
217987 7.5 危険 synetics - synetics i-doit の CMDB Web アプリケーションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1597 2014-03-3 16:21 2014-02-14 Show GitHub Exploit DB Packet Storm
217988 3.5 注意 IBM - IBM Content Navigator におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0858 2014-03-3 16:20 2014-02-25 Show GitHub Exploit DB Packet Storm
217989 4.3 警告 Telligent - Telligent Evolution の controlpanel/loading.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1223 2014-03-3 15:05 2014-01-16 Show GitHub Exploit DB Packet Storm
217990 2.6 注意 Tilde Inc. - Ember.js の link-to ヘルパーにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0046 2014-03-3 14:58 2014-02-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294441 - demandmedia pluck_sitelife Multiple cross-site scripting (XSS) vulnerabilities in Demand Media Pluck SiteLife before 5.0.13 allow remote attackers to inject arbitrary web script or HTML via (1) the jsonRequest parameter to Dir… CWE-79
Cross-site Scripting
CVE-2012-0253 2024-11-21 10:34 2012-04-19 Show GitHub Exploit DB Packet Storm
294442 - irfanview flashpix_plugin Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not p… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0278 2024-11-21 10:34 2012-04-18 Show GitHub Exploit DB Packet Storm
294443 - hp system_management_homepage Unspecified vulnerability in HP System Management Homepage (SMH) before 7.0 allows remote authenticated users to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2012-0135 2024-11-21 10:34 2012-04-18 Show GitHub Exploit DB Packet Storm
294444 - curl curl
libcurl
curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction of a pathname from a URL, which allows remote attackers to conduct data-injection attacks via a craft… CWE-89
SQL Injection
CVE-2012-0036 2024-11-21 10:34 2012-04-14 Show GitHub Exploit DB Packet Storm
294445 - hp procurve_switch_5400zl_management_module
procurve_switch_5412-96gzl
procurve_switch_chassis_e5406zl
procurve_switch_5400zl
procurve_switch_e5406zl
procurve_switch_5406-48gzl
procurv…
HP ProCurve 5400 zl switches with certain serial numbers include a compact flash card that contains an unspecified virus, which might allow user-assisted remote attackers to execute arbitrary code on… NVD-CWE-Other
CVE-2012-0133 2024-11-21 10:34 2012-04-12 Show GitHub Exploit DB Packet Storm
294446 - wireshark wireshark The lanalyzer_read function in wiretap/lanalyzer.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a Novell captur… CWE-20
 Improper Input Validation 
CVE-2012-0068 2024-11-21 10:34 2012-04-11 Show GitHub Exploit DB Packet Storm
294447 - wireshark
redhat
wireshark
enterprise_linux
wiretap/iptrace.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a long packet in an AIX iptrace file. CWE-20
 Improper Input Validation 
CVE-2012-0067 2024-11-21 10:34 2012-04-11 Show GitHub Exploit DB Packet Storm
294448 - wireshark
redhat
wireshark
enterprise_linux
Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a long packet in a (1) Accellent 5Views (aka .5vw) file, (2) I4B trac… CWE-20
 Improper Input Validation 
CVE-2012-0066 2024-11-21 10:34 2012-04-11 Show GitHub Exploit DB Packet Storm
294449 - wireshark wireshark Buffer overflow in the reassemble_message function in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a deni… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0043 2024-11-21 10:34 2012-04-11 Show GitHub Exploit DB Packet Storm
294450 - wireshark
redhat
wireshark
enterprise_linux
Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 does not properly perform certain string conversions, which allows remote attackers to cause a denial of service (NULL pointer dereference and app… NVD-CWE-Other
CVE-2012-0042 2024-11-21 10:34 2012-04-11 Show GitHub Exploit DB Packet Storm