Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218561 10 危険 ヒューレット・パッカード - HP LoadRunner の Virtual User Generator における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-6213 2014-04-23 16:38 2013-10-30 Show GitHub Exploit DB Packet Storm
218562 6.5 警告 ヒューレット・パッカード - HP Database and Middleware Automation における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-6212 2014-04-23 16:37 2013-10-21 Show GitHub Exploit DB Packet Storm
218563 3.5 注意 Fedora Project
Digium
- Asterisk Open Source の PJSIP チャネルドライバの res/res_pjsip_exten_state.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2289 2014-04-23 15:53 2014-03-10 Show GitHub Exploit DB Packet Storm
218564 4.3 警告 Fedora Project
Digium
- Asterisk Open Source の PJSIP チャネルドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2288 2014-04-23 15:52 2014-03-10 Show GitHub Exploit DB Packet Storm
218565 3.5 注意 Fedora Project
Digium
- Asterisk Open Source および Certified Asterisk の channels/chan_sip.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2287 2014-04-23 15:52 2014-03-10 Show GitHub Exploit DB Packet Storm
218566 7.5 危険 Fedora Project
Digium
- Asterisk Open Source および Certified Asterisk の main/http.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2286 2014-04-23 15:52 2014-03-10 Show GitHub Exploit DB Packet Storm
218567 3.5 注意 エフ・セキュア - F-Secure Messaging Secure Gateway におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2844 2014-04-22 19:44 2014-04-16 Show GitHub Exploit DB Packet Storm
218568 7.5 危険 エフ・セキュア - 複数の F-Secure 製品における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7369 2014-04-22 19:40 2013-04-24 Show GitHub Exploit DB Packet Storm
218569 2.1 注意 エフ・セキュア - Mac OS X 用の複数の F-Secure 製品におけるファイアーウォールを無効にされる脆弱性 CWE-noinfo
情報不足
CVE-2012-6646 2014-04-22 19:18 2012-12-12 Show GitHub Exploit DB Packet Storm
218570 6.3 警告 Novell
Lennart Poettering
- systemd の session_link_x11_socket 関数における任意のファイルを作成される脆弱性 CWE-59
リンク解釈の問題
CVE-2012-0871 2014-04-22 18:57 2012-02-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291611 5.3 MEDIUM
Adjacent
ibm network_operating_system The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) … CWE-200
Information Exposure
CVE-2013-0570 2024-11-21 10:47 2018-07-14 Show GitHub Exploit DB Packet Storm
291612 6.1 MEDIUM
Network
ibm inotes Open redirect vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified ve… CWE-601
Open Redirect
CVE-2013-0594 2024-11-21 10:47 2018-07-12 Show GitHub Exploit DB Packet Storm
291613 5.4 MEDIUM
Network
ibm inotes Cross-site scripting (XSS) vulnerability in IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force… CWE-79
Cross-site Scripting
CVE-2013-0592 2024-11-21 10:47 2018-07-12 Show GitHub Exploit DB Packet Storm
291614 7.5 HIGH
Network
ibm inotes IBM iNotes before 8.5.3 Fix Pack 6 and 9.x before 9.0.1 allows remote attackers to bypass the remote image filtering mechanism and obtain sensitive information via a crafted e-mail message. IBM X-For… CWE-200
Information Exposure
CVE-2013-0589 2024-11-21 10:47 2018-07-12 Show GitHub Exploit DB Packet Storm
291615 8.8 HIGH
Network
redhat manageiq_enterprise_virtualization_manager Cross-site request forgery (CSRF) vulnerability in ManageIQ Enterprise Virtualization Manager (EVM) allows remote attackers to hijack the authentication of users for requests that have unspecified im… CWE-352
 Origin Validation Error
CVE-2013-0185 2024-11-21 10:47 2018-05-2 Show GitHub Exploit DB Packet Storm
291616 8.8 HIGH
Network
apache vcl The Privileges portion of the web GUI and the XMLRPC API in Apache VCL 2.3.x before 2.3.2, 2.2.x before 2.2.2 and 2.1 allow remote authenticated users with nodeAdmin, manageGroup, resourceGrant, or u… CWE-264
CWE-20
Permissions, Privileges, and Access Controls
 Improper Input Validation 
CVE-2013-0267 2024-11-21 10:47 2018-02-22 Show GitHub Exploit DB Packet Storm
291617 - webfs webfs The Gentoo init script for webfs uses world-readable permissions for /var/log/webfsd.log, which allows local users to have unspecified impact by reading the file. CWE-200
Information Exposure
CVE-2013-0347 2024-11-21 10:47 2014-11-16 Show GitHub Exploit DB Packet Storm
291618 - redhat freeipa The ipapwd_chpwop function in daemons/ipa-slapi-plugins/ipa-pwd-extop/ipa_pwd_extop.c in the directory server (dirsrv) in FreeIPA before 3.2.0 allows remote attackers to cause a denial of service (cr… CWE-20
 Improper Input Validation 
CVE-2013-0336 2024-11-21 10:47 2014-11-4 Show GitHub Exploit DB Packet Storm
291619 - bundler
opensuse
fedoraproject
bundler
opensuse
fedora
Bundler before 1.7, when multiple top-level source lines are used, allows remote attackers to install arbitrary gems by creating a gem with the same name as another gem in a different source. CWE-20
 Improper Input Validation 
CVE-2013-0334 2024-11-21 10:47 2014-10-31 Show GitHub Exploit DB Packet Storm
291620 - corosync corosync The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted… NVD-CWE-Other
CVE-2013-0250 2024-11-21 10:47 2014-06-6 Show GitHub Exploit DB Packet Storm