Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218361 5 警告 シーメンス - Siemens RuggedCom ROS の Web 管理インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2590 2014-04-2 15:56 2014-03-28 Show GitHub Exploit DB Packet Storm
218362 7.5 危険 Raoul Proenca - Gnew における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7349 2014-04-2 15:42 2013-10-2 Show GitHub Exploit DB Packet Storm
218363 7.5 危険 Raoul Proenca - Gnew における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5640 2014-04-2 15:42 2013-10-2 Show GitHub Exploit DB Packet Storm
218364 9.3 危険 Schneider Electric - Schneider Electric Modbus Serial Driver の ModbusDrv.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0662 2014-04-2 15:36 2013-09-13 Show GitHub Exploit DB Packet Storm
218365 7.5 危険 Sonatype Inc. - Sonatype Nexus OSS および Pro における任意のユーザアカウントを作成される脆弱性 CWE-noinfo
情報不足
CVE-2014-2034 2014-04-2 15:03 2014-03-3 Show GitHub Exploit DB Packet Storm
218366 3.7 注意 レッドハット - Red Hat Conga の Luci におけるセッションへのアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7347 2014-04-2 14:56 2013-01-8 Show GitHub Exploit DB Packet Storm
218367 3.7 注意 レッドハット - Red Hat Conga の Luci における権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3359 2014-04-2 14:55 2012-09-6 Show GitHub Exploit DB Packet Storm
218368 10 危険 Jgaa - War FTP Daemon におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2278 2014-04-2 14:43 2013-02-25 Show GitHub Exploit DB Packet Storm
218369 4 警告 Jgaa - War FTP Daemon におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-5141 2014-04-2 14:43 2009-09-12 Show GitHub Exploit DB Packet Storm
218370 10 危険 アライドテレシス - 複数の Allied Telesis ルータ製品における権限を取得される脆弱性 CWE-287
CWE-78
CVE-2014-1982 2014-04-2 13:41 2014-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296321 - apple safari WebKit in Apple Safari before 5.1.4 does not properly implement "From third parties and advertisers" cookie blocking, which makes it easier for remote web servers to track users via a cookie. CWE-200
Information Exposure
CVE-2012-0640 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
296322 - apple safari The Internationalized Domain Name (IDN) feature in Apple Safari before 5.1.4 on Windows does not properly restrict the characters in URLs, which allows remote attackers to spoof a domain name via uns… CWE-20
 Improper Input Validation 
CVE-2012-0584 2024-11-21 10:35 2012-03-13 Show GitHub Exploit DB Packet Storm
296323 - apple itunes
webkit
WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0648 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296324 - apple iphone_os Format string vulnerability in VPN in Apple iOS before 5.1 allows remote attackers to execute arbitrary code via a crafted racoon configuration file. CWE-134
Use of Externally-Controlled Format String
CVE-2012-0646 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296325 - apple iphone_os Siri in Apple iOS before 5.1 does not properly restrict the ability of Mail.app to handle voice commands, which allows physically proximate attackers to bypass the locked state via a command that for… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0645 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296326 - apple iphone_os Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture. CWE-362
Race Condition
CVE-2012-0644 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296327 - apple iphone_os The kernel in Apple iOS before 5.1 does not properly handle debug system calls, which allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a crafted program. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0643 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296328 - apple iphone_os Integer underflow in Apple iOS before 5.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via a crafted catalog file in an HFS disk image. CWE-189
Numeric Errors
CVE-2012-0642 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296329 - apple iphone_os CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL, a different vu… CWE-20
 Improper Input Validation 
CVE-2012-0641 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm
296330 - apple itunes
webkit
WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0639 2024-11-21 10:35 2012-03-9 Show GitHub Exploit DB Packet Storm