Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218791 5 警告 Devscripts Devel Team - devscripts の uupdate におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-1833 2014-02-7 16:49 2014-01-30 Show GitHub Exploit DB Packet Storm
218792 4.3 警告 Apache Software Foundation - Apache ActiveMQ のデモ Web アプリケーションの Portfolio publisher servlet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1880 2014-02-7 16:32 2013-03-21 Show GitHub Exploit DB Packet Storm
218793 4.3 警告 Oyvind Sean Kinsey - easyXDM の name.html におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1403 2014-02-7 16:01 2014-01-18 Show GitHub Exploit DB Packet Storm
218794 4.3 警告 Xaraya - Xaraya におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3639 2014-02-7 16:00 2013-06-26 Show GitHub Exploit DB Packet Storm
218795 9.3 危険 JetAudio - jetAudio の JetMPG.ax モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2691 2014-02-7 16:00 2013-05-2 Show GitHub Exploit DB Packet Storm
218796 4.3 警告 John Dyer
ownCloud
- ownCloud Server で使用される MediaElement.js の flashmediaelement.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1967 2014-02-7 15:59 2013-04-18 Show GitHub Exploit DB Packet Storm
218797 4.3 警告 レッドハット - Red Hat Network Satellite および Proxy の Spacewalk-backend におけるパスワードを取得される脆弱性 CWE-310
暗号の問題
CVE-2012-0059 2014-02-7 12:23 2012-02-6 Show GitHub Exploit DB Packet Storm
218798 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3344 2014-02-7 12:22 2011-09-15 Show GitHub Exploit DB Packet Storm
218799 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2927 2014-02-7 12:21 2011-09-15 Show GitHub Exploit DB Packet Storm
218800 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2920 2014-02-7 12:20 2011-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295121 - microsoft sharepoint_foundation Cross-site scripting (XSS) vulnerability in inplview.aspx in Microsoft SharePoint Foundation 2010 Gold and SP1 allows remote attackers to inject arbitrary web script or HTML via JavaScript sequences … CWE-79
Cross-site Scripting
CVE-2012-0017 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295122 - microsoft .net_framework Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly calculate the length of an unspecified buffer, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser appl… CWE-94
Code Injection
CVE-2012-0015 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295123 - microsoft .net_framework
silverlight
Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated with unmanaged objects, which allows remote attackers to exe… CWE-94
Code Injection
CVE-2012-0014 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295124 - microsoft internet_explorer Microsoft Internet Explorer 9 does not properly handle the creation and initialization of string objects, which allows remote attackers to read data from arbitrary process-memory locations via a craf… CWE-665
 Improper Initialization
CVE-2012-0012 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295125 - microsoft internet_explorer Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "HTML Layout Remote Code… CWE-94
Code Injection
CVE-2012-0011 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295126 - microsoft internet_explorer Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations, which allows user-assisted remote attackers to read content from a different (1) domain or (2) zone via a … CWE-200
Information Exposure
CVE-2012-0010 2024-11-21 10:34 2012-02-15 Show GitHub Exploit DB Packet Storm
295127 - cisco ironport_encryption_appliance Cross-site scripting (XSS) vulnerability in the management interface on the Cisco IronPort Encryption Appliance with software before 6.5.3 allows remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2012-0340 2024-11-21 10:34 2012-02-14 Show GitHub Exploit DB Packet Storm
295128 - emc documentum_xplore EMC Documentum xPlore 1.0, 1.1 before P07, and 1.2 does not properly enforce the requirement for BROWSE permission, which allows remote authenticated users to determine the existence of an object, or… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0396 2024-11-21 10:34 2012-02-7 Show GitHub Exploit DB Packet Storm
295129 - ibm aix The TCP implementation in IBM AIX 5.3, 6.1, and 7.1, when the Large Send Offload option is enabled, allows remote attackers to cause a denial of service (assertion failure and panic) via an unspecifi… NVD-CWE-noinfo
CVE-2012-0194 2024-11-21 10:34 2012-02-7 Show GitHub Exploit DB Packet Storm
295130 - symantec pcanywhere
altiris_client_management_suite_pcanywhere_solution
altiris_deployment_solution_remote_pcanywhere_solution
Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1… NVD-CWE-noinfo
CVE-2012-0290 2024-11-21 10:34 2012-02-7 Show GitHub Exploit DB Packet Storm