Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218421 5 警告 Craig Drummond - cantata における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7301 2014-02-4 15:44 2013-12-24 Show GitHub Exploit DB Packet Storm
218422 5 警告 Craig Drummond - cantata における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7300 2014-02-4 15:43 2013-12-24 Show GitHub Exploit DB Packet Storm
218423 4.3 警告 OpenStack
レッドハット
- OpenStack Oslo の python-qpid クライアントにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-6491 2014-02-4 14:23 2013-05-30 Show GitHub Exploit DB Packet Storm
218424 5 警告 Schneider Electric - Schneider Electric Telvent SAGE 3030 RTU のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
CWE-399
CVE-2013-6143 2014-02-4 14:21 2013-12-30 Show GitHub Exploit DB Packet Storm
218425 7.5 危険 タブローソフトウェア - Tableau Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1204 2014-02-4 14:12 2014-01-8 Show GitHub Exploit DB Packet Storm
218426 4.3 警告 Steve Souza - JAMon におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6235 2014-02-4 14:11 2013-01-23 Show GitHub Exploit DB Packet Storm
218427 5.5 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0833 2014-02-4 14:08 2014-01-24 Show GitHub Exploit DB Packet Storm
218428 3.5 注意 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0832 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
218429 6.8 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0831 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
218430 4 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0830 2014-02-4 14:06 2014-01-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293051 - microsoft windows_server_2008
windows_xp
windows_7
windows_server_2003
windows_vista
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, and Windows 8 C… CWE-20
 Improper Input Validation 
CVE-2012-1848 2024-11-21 10:37 2012-05-9 Show GitHub Exploit DB Packet Storm
293052 - microsoft office
excel
excel_viewer
office_compatibility_pack
Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Office 2008 and 2011 for Mac; Excel Viewer; and Office Compatibility Pack SP2 and SP3 do not properly handle memory during the openi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1847 2024-11-21 10:37 2012-05-9 Show GitHub Exploit DB Packet Storm
293053 - oracle database_server The TNS Listener, as used in Oracle Database 11g 11.1.0.7, 11.2.0.2, and 11.2.0.3, and 10g 10.2.0.3, 10.2.0.4, and 10.2.0.5, as used in Oracle Fusion Middleware, Enterprise Manager, E-Business Suite,… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1675 2024-11-21 10:37 2012-05-9 Show GitHub Exploit DB Packet Storm
293054 - vmware esxi
esx
The VMX process in VMware ESXi 4.1 and ESX 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process crash) or possibly execute… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1517 2024-11-21 10:37 2012-05-5 Show GitHub Exploit DB Packet Storm
293055 9.9 CRITICAL
Network
vmware esx
esxi
The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a denial of service (memory overwrite and process cr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1516 2024-11-21 10:37 2012-05-5 Show GitHub Exploit DB Packet Storm
293056 - oracle fusion_middleware Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via u… NVD-CWE-noinfo
CVE-2012-1709 2024-11-21 10:37 2012-05-4 Show GitHub Exploit DB Packet Storm
293057 - oracle database_server Unspecified vulnerability in the Application Express component in Oracle Database Server 4.0 and 4.1 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2012-1708 2024-11-21 10:37 2012-05-4 Show GitHub Exploit DB Packet Storm
293058 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.3.0 through 5.3.4, 6.0.1, and 6.2.0 allows remote authenticated users to affec… NVD-CWE-noinfo
CVE-2012-1707 2024-11-21 10:37 2012-05-4 Show GitHub Exploit DB Packet Storm
293059 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.3.0 through 5.3.4, 6.0.1, and 6.2.0 allows remote authenticated users to affec… NVD-CWE-noinfo
CVE-2012-1706 2024-11-21 10:37 2012-05-4 Show GitHub Exploit DB Packet Storm
293060 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.3.0 through 5.3.4, 6.0.1, and 6.2.0 allows remote authenticated users to affec… NVD-CWE-noinfo
CVE-2012-1704 2024-11-21 10:37 2012-05-4 Show GitHub Exploit DB Packet Storm