Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218531 2.1 注意 Python Software Foundation - RPLY の parsergenerator.py のパーサキャッシュ機能におけるキャッシュデータを偽装される脆弱性 CWE-DesignError
CVE-2014-1604 2014-01-29 16:27 2014-01-18 Show GitHub Exploit DB Packet Storm
218532 2.1 注意 Starbucks Coffee Company - iOS 用 Starbucks アプリケーションにおけるユーザ名などの情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0647 2014-01-29 16:20 2014-01-13 Show GitHub Exploit DB Packet Storm
218533 7.2 危険 Detlef Pilzecker - Perl 用 Proc::Daemon モジュールにおける脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7135 2014-01-29 15:00 2013-12-16 Show GitHub Exploit DB Packet Storm
218534 10 危険 Enghouse Interactive - Enghouse Interactive IVR Pro の Enghouse Interactive Professional Services の不特定の "アドオン製品" における権限を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-6838 2014-01-29 14:50 2013-11-27 Show GitHub Exploit DB Packet Storm
218535 5 警告 Bitweaver - Bitweaver の gmap/view_overlay.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5192 2014-01-29 14:02 2012-10-23 Show GitHub Exploit DB Packet Storm
218536 5 警告 シトリックス・システムズ - Android 用 Citrix GoToMeeting アプリケーションにおけるユーザ ID を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-1664 2014-01-29 13:40 2014-01-23 Show GitHub Exploit DB Packet Storm
218537 4.3 警告 Joomla! - Joomla! 用 JV Comment におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0794 2014-01-29 12:37 2014-01-14 Show GitHub Exploit DB Packet Storm
218538 5 警告 Tntnet - tntnet の framework/common/messageheaderparser.cpp における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-7299 2014-01-29 12:27 2013-12-11 Show GitHub Exploit DB Packet Storm
218539 5 警告 Tntnet - cxxtools の query_params.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-7298 2014-01-29 12:04 2013-12-14 Show GitHub Exploit DB Packet Storm
218540 4.3 警告 Open-Xchange - Open-Xchange AppSuite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7143 2014-01-28 18:24 2013-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293481 - webglimpse webglimpse webglimpse.cgi in Webglimpse before 2.20.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter, as exploited in the wild in March 2012. CWE-78
OS Command 
CVE-2012-1795 2024-11-21 10:37 2012-03-21 Show GitHub Exploit DB Packet Storm
293482 - nikola_posa webfoliocms1.0.8
webfoliocms1.0.7
webfoliocms1.1.3
webfoliocms1.0.4
webfoliocms1.0.5
webfoliocms1.1.1
webfoliocms1.1.2
webfoliocms1.0.2
webfoliocms1.0.9
webfoliocms1.1.0
Multiple cross-site request forgery (CSRF) vulnerabilities in Webfolio CMS 1.1.4 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add an adminis… CWE-352
 Origin Validation Error
CVE-2012-1498 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293483 - netmechanica netdecision The Traffic Grapher Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the source code of NtDecision script files with a .nd extension via an invalid version number in… CWE-200
Information Exposure
CVE-2012-1466 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293484 - netmechanica netdecision Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause a denial of service (application crash) via a long URL in an HTTP request. NO… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1465 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293485 - netmechanica netdecision Dashboard Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the installation path via a request with a trailing "?" character, which causes Dashboard to attempt to ac… CWE-200
Information Exposure
CVE-2012-1464 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293486 - webgrind_project webgrind Absolute path traversal vulnerability in Webgrind 1.0 and 1.0.2 allows remote attackers to read arbitrary files via a full pathname in the file parameter to index.php. CWE-22
Path Traversal
CVE-2012-1790 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293487 - tskynet kongreg8 Multiple cross-site scripting (XSS) vulnerabilities in Kongreg8 1.7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) surname or (2) firstname parameters to modules/members/… CWE-79
Cross-site Scripting
CVE-2012-1789 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293488 - wonderdesk wonderdesk_sql Multiple cross-site scripting (XSS) vulnerabilities in wonderdesk.cgi in WonderDesk SQL 4.14 allow remote attackers to inject arbitrary web script or HTML via the (1) cus_email parameter in a cust_lo… CWE-79
Cross-site Scripting
CVE-2012-1788 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293489 - webglimpse webglimpse Multiple cross-site scripting (XSS) vulnerabilities in wgarcmin.cgi in Webglimpse 2.20.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) URL, (2) FILE, or (3) DO… CWE-79
Cross-site Scripting
CVE-2012-1787 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
293490 - kylegilman video_embed_\&_thumbnail_generator The Media Upload form in the Video Embed & Thumbnail Generator plugin before 2.0 for WordPress allows remote attackers to obtain the installation path via unknown vectors. CWE-200
Information Exposure
CVE-2012-1786 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm