Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218251 4 警告 Plone Foundation - Plone の sendto.py における電子メールを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4192 2014-03-13 14:43 2013-06-18 Show GitHub Exploit DB Packet Storm
218252 5.8 警告 Plone Foundation - Plone の zip.py における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4191 2014-03-13 14:42 2013-06-18 Show GitHub Exploit DB Packet Storm
218253 4.3 警告 Plone Foundation - Plone の複数の PY ファイルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4190 2014-03-13 14:42 2013-06-18 Show GitHub Exploit DB Packet Storm
218254 6.5 警告 Plone Foundation - Plone の複数の PY ファイルにおけるサブツリー上のノードにアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2013-4189 2014-03-13 14:42 2013-06-18 Show GitHub Exploit DB Packet Storm
218255 4.3 警告 Plone Foundation - Plone の traverser.py におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4188 2014-03-13 14:41 2013-06-18 Show GitHub Exploit DB Packet Storm
218256 5.4 警告 マイクロソフト - 複数の Microsoft Windows 製品の Security Account Manager Remote プロトコルの実装におけるアカウントロックアウトポリシーを回避される脆弱性 CWE-20
CWE-264
CVE-2014-0317 2014-03-13 14:40 2014-03-11 Show GitHub Exploit DB Packet Storm
218257 6.6 警告 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの win32k.sys におけるカーネルメモリから重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-0323 2014-03-13 14:39 2014-03-11 Show GitHub Exploit DB Packet Storm
218258 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの win32k.sys における権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2014-0300 2014-03-13 14:38 2014-03-11 Show GitHub Exploit DB Packet Storm
218259 7.1 危険 マイクロソフト - Microsoft Silverlight における DEP および ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0319 2014-03-13 14:33 2014-03-11 Show GitHub Exploit DB Packet Storm
218260 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の DirectShow の qedit.dll におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2014-0301 2014-03-13 14:32 2014-03-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292131 - devscripts_devel_team devscripts scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via a symlink attack on the temporary (1) standard output or (2… CWE-362
Race Condition
CVE-2012-3500 2024-11-21 10:41 2012-10-1 Show GitHub Exploit DB Packet Storm
292132 - cisco ios The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories and missing signatures, allows remote attackers to … CWE-399
 Resource Management Errors
CVE-2012-3950 2024-11-21 10:41 2012-09-27 Show GitHub Exploit DB Packet Storm
292133 - cisco ios
unified_communications_manager
ios_xe
The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1; Cisco IOS 12.2 through 12.4 and 15.0 through 15.2… CWE-20
 Improper Input Validation 
CVE-2012-3949 2024-11-21 10:41 2012-09-27 Show GitHub Exploit DB Packet Storm
292134 - apple iphone_os WebKit, as used in Apple iOS before 6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. CWE-119
CWE-399
Incorrect Access of Indexable Resource ('Range Error') 
 Resource Management Errors
CVE-2012-3747 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292135 - apple iphone_os UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a … CWE-310
Cryptographic Issues
CVE-2012-3746 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292136 - apple iphone_os Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflow and connectivity outage) via a crafted user-data header in an SMS message. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3745 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292137 - apple iphone_os Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return addre… NVD-CWE-Other
CVE-2012-3744 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292138 - apple iphone_os The System Logs implementation in Apple iOS before 6 does not restrict /var/log access by sandboxed apps, which allows remote attackers to obtain sensitive information via a crafted app that reads lo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3743 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292139 - apple iphone_os Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to the https lock indicator, which allows remote attackers to spoof https connection… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3742 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292140 - apple iphone_os The Restrictions (aka Parental Controls) implementation in Apple iOS before 6 does not properly handle purchase attempts after a Disable Restrictions action, which allows local users to bypass an int… CWE-287
Improper Authentication
CVE-2012-3741 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm