Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218651 6.8 警告 デル - Dell PowerConnect スイッチ上で稼働する OpenManage Web Application におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3595 2014-01-22 19:13 2014-01-17 Show GitHub Exploit DB Packet Storm
218652 10 危険 デル - Dell PowerConnect スイッチの SSH サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3594 2014-01-22 19:12 2014-01-17 Show GitHub Exploit DB Packet Storm
218653 4 警告 WordPress.org - WordPress の wp-admin/press-this.php における publish アクションを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5270 2014-01-22 18:49 2011-04-26 Show GitHub Exploit DB Packet Storm
218654 2.1 注意 WordPress.org - WordPress におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5297 2014-01-22 18:47 2010-06-27 Show GitHub Exploit DB Packet Storm
218655 4.9 警告 WordPress.org - WordPress の wp-includes/capabilities.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5296 2014-01-22 18:43 2010-09-4 Show GitHub Exploit DB Packet Storm
218656 4.3 警告 WordPress.org - WordPress の wp-admin/plugins.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5295 2014-01-22 18:41 2010-11-14 Show GitHub Exploit DB Packet Storm
218657 4.3 警告 WordPress.org - WordPress の wp-admin/includes/file.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5294 2014-01-22 18:38 2010-11-14 Show GitHub Exploit DB Packet Storm
218658 5.8 警告 WordPress.org - WordPress の wp-includes/comment.php におけるスパム制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5293 2014-01-22 18:35 2010-11-30 Show GitHub Exploit DB Packet Storm
218659 4.3 警告 シスコシステムズ - Cisco Secure Access Control System のポータルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0668 2014-01-22 16:37 2014-01-21 Show GitHub Exploit DB Packet Storm
218660 2.6 注意 TYPO3 Association - TYPO3 の Extbase Framework の ActionController ベースクラスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7078 2014-01-22 16:32 2013-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294961 - joomla joomla\! Joomla! before 1.5.12 does not perform a JEXEC check in unspecified files, which allows remote attackers to obtain the installation path via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2011-4911 2024-11-21 10:33 2012-10-8 Show GitHub Exploit DB Packet Storm
294962 - joomla joomla\! Cross-site scripting (XSS) vulnerability in Joomla! before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. CWE-79
Cross-site Scripting
CVE-2011-4910 2024-11-21 10:33 2012-10-8 Show GitHub Exploit DB Packet Storm
294963 - joomla joomla\! Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.5.12 allow remote attackers to inject arbitrary web script or HTML via the HTTP_REFERER header to (1) components/com_content/vi… CWE-79
Cross-site Scripting
CVE-2011-4909 2024-11-21 10:33 2012-10-8 Show GitHub Exploit DB Packet Storm
294964 - impresspages impresspages_cms Eval injection vulnerability in ip_cms/modules/standard/content_management/actions.php in ImpressPages CMS 1.0.12 and possibly other versons before 1.0.13 allows remote attackers to execute arbitrary… CWE-94
Code Injection
CVE-2011-4932 2024-11-21 10:33 2012-10-7 Show GitHub Exploit DB Packet Storm
294965 - thecartpress thecartpress Cross-site scripting (XSS) vulnerability in admin/OptionsPostsList.php in the TheCartPress plugin for WordPress before 1.1.6 before 2011-12-31 allows remote attackers to inject arbitrary web script o… CWE-79
Cross-site Scripting
CVE-2011-5207 2024-11-21 10:33 2012-10-5 Show GitHub Exploit DB Packet Storm
294966 - rapidleech rapidleech Cross-site scripting (XSS) vulnerability in notes.php in Rapidleech before 2.3 rev42 SVN r399 allows remote attackers to inject arbitrary web script or HTML via the notes parameter. CWE-79
Cross-site Scripting
CVE-2011-5206 2024-11-21 10:33 2012-10-5 Show GitHub Exploit DB Packet Storm
294967 - rapidleech rapidleech Cross-site scripting (XSS) vulnerability in audl.php in Rapidleech 2.3 rev42 SVN r358, rev43 SVN r397, and earlier allows remote attackers to inject arbitrary web script or HTML via the links paramet… CWE-79
Cross-site Scripting
CVE-2011-5205 2024-11-21 10:33 2012-10-5 Show GitHub Exploit DB Packet Storm
294968 - akiva webboard Akiva WebBoard 8.x stores passwords in plaintext, which allows local users to obtain sensitive information by reading from the database. CWE-255
Credentials Management
CVE-2011-5204 2024-11-21 10:33 2012-10-5 Show GitHub Exploit DB Packet Storm
294969 - akiva webboard SQL injection vulnerability in WB/Default.asp in Akiva WebBoard before 8 SR 1 allows remote attackers to execute arbitrary SQL commands via the name parameter. NOTE: some of these details are obtain… CWE-89
SQL Injection
CVE-2011-5203 2024-11-21 10:33 2012-10-5 Show GitHub Exploit DB Packet Storm
294970 - michael_biebl policykit PolicyKit 0.103 sets the AdminIdentities to "wheel" by default, which allows local users in the wheel group to gain root privileges without authentication. CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4945 2024-11-21 10:33 2012-10-2 Show GitHub Exploit DB Packet Storm