Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218021 4.9 警告 ownCloud - ownCloud におけるユーザの ownCloud のローカルファイルシステムをマウントされる脆弱性 CWE-20
不適切な入力確認
CVE-2014-2585 2014-03-25 18:05 2014-03-7 Show GitHub Exploit DB Packet Storm
218022 4.3 警告 ownCloud - ownCloud におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2057 2014-03-25 18:05 2014-03-7 Show GitHub Exploit DB Packet Storm
218023 6.5 警告 ownCloud - ownCloud の core/settings.php における任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-7344 2014-03-25 18:04 2013-02-17 Show GitHub Exploit DB Packet Storm
218024 6.5 警告 ownCloud - ownCloud の core/ajax/translations.php における任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-0303 2014-03-25 18:03 2013-02-17 Show GitHub Exploit DB Packet Storm
218025 4.3 警告 Flowplayer - Flowplayer HTML5 の Flash フォールバック機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7343 2014-03-25 12:29 2013-05-2 Show GitHub Exploit DB Packet Storm
218026 4.3 警告 Flowplayer - Flowplayer HTML5 の Flash フォールバック機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7342 2014-03-25 12:29 2013-05-2 Show GitHub Exploit DB Packet Storm
218027 4.3 警告 Moodle
Flowplayer
- Moodle で使用される Flowplayer Flash におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7341 2014-03-25 12:28 2013-07-27 Show GitHub Exploit DB Packet Storm
218028 4 警告 マカフィー - McAfee Asset Manager の servlet/downloadReport におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2588 2014-03-25 12:08 2014-03-18 Show GitHub Exploit DB Packet Storm
218029 6.5 警告 マカフィー - McAfee Asset Manager の jsp/reports/ReportsAudit.jsp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2587 2014-03-25 12:07 2014-03-18 Show GitHub Exploit DB Packet Storm
218030 4.3 警告 マカフィー - McAfee Cloud Single Sign On のログイン監査フォームにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2586 2014-03-25 12:07 2014-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296211 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a database connection string within a web page, which allows remote attackers to obtain potentially sensitive information … CWE-200
Information Exposure
CVE-2011-4741 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296212 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates web pages containing external links in response to GET requests with query strings for smb/app/search-data/catalogId/mark… CWE-200
Information Exposure
CVE-2011-4740 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296213 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 generates a password form field without disabling the autocomplete feature, which makes it easier for remote attackers to bypass au… CWE-255
Credentials Management
CVE-2011-4739 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296214 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 does not include the HTTPOnly flag in a Set-Cookie header for a cookie, which makes it easier for remote attackers to obtain potent… CWE-200
Information Exposure
CVE-2011-4738 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296215 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 includes a submitted password within an HTTP response body, which allows remote attackers to obtain sensitive information by sniffi… CWE-200
Information Exposure
CVE-2011-4737 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296216 - parallels parallels_plesk_panel The Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 receives cleartext password input over HTTP, which allows remote attackers to obtain sensitive information by sniffing the network,… CWE-310
Cryptographic Issues
CVE-2011-4736 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296217 - parallels parallels_plesk_panel Multiple cross-site scripting (XSS) vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to inject arbitrary web script or HTML via crafted in… CWE-79
Cross-site Scripting
CVE-2011-4735 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296218 - parallels parallels_plesk_panel Multiple SQL injection vulnerabilities in the Control Panel in Parallels Plesk Panel 10.2.0 build 20110407.20 allow remote attackers to execute arbitrary SQL commands via crafted input to a PHP scrip… CWE-89
SQL Injection
CVE-2011-4734 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296219 - parallels parallels_plesk_panel The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an unspecifie… NVD-CWE-Other
CVE-2011-4733 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm
296220 - parallels parallels_plesk_panel The Server Administration Panel in Parallels Plesk Panel 10.2.0_build1011110331.18 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have … NVD-CWE-Other
CVE-2011-4732 2024-11-21 10:32 2011-12-16 Show GitHub Exploit DB Packet Storm