Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218911 7.5 危険 SAP - SAP NetWeaver の System Landscape Directory における情報を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4003 2014-06-11 17:45 2014-06-6 Show GitHub Exploit DB Packet Storm
218912 4 警告 シスコシステムズ - Cisco WebEx Meeting Server における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3294 2014-06-11 17:11 2014-06-9 Show GitHub Exploit DB Packet Storm
218913 5.5 警告 シスコシステムズ - Cisco Unified Communications Manager の Real Time Monitoring Tool の実装における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2014-3292 2014-06-11 17:10 2014-06-10 Show GitHub Exploit DB Packet Storm
218914 4 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の Java インターフェースにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3287 2014-06-11 17:09 2014-06-9 Show GitHub Exploit DB Packet Storm
218915 4.3 警告 シスコシステムズ - Cisco AsyncOS 製品にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3289 2014-06-11 16:37 2014-06-10 Show GitHub Exploit DB Packet Storm
218916 6 警告 (複数のベンダ) - 複数製品の UEFI ファームウェアの実装に脆弱性 - CVE-2014-2961 2014-06-11 16:19 2014-06-9 Show GitHub Exploit DB Packet Storm
218917 4.3 警告 Misery Project - Drupal 用 Misery モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4599 2014-06-11 15:55 2013-11-13 Show GitHub Exploit DB Packet Storm
218918 4 警告 Rik de Boer - Drupal 用 Revisioning モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4597 2014-06-11 15:54 2013-11-13 Show GitHub Exploit DB Packet Storm
218919 5 警告 Gordon Heydon - Drupal 用 Secure Pages モジュールにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-4595 2014-06-11 15:54 2013-11-6 Show GitHub Exploit DB Packet Storm
218920 4 警告 Marc Ferran - Drupal 用 Autocomplete Widgets for Text and Number Fields モジュールにおける重要なフィールドの値を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1973 2014-06-11 15:53 2013-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296671 7.8 HIGH
Local
redhat jboss_enterprise_application_platform
jboss_application_server
An Elevated Privileges issue exists in JBoss AS 7 Community Release due to the improper implementation in the security context propagation, A threat gets reused from the thread pool that still retain… CWE-269
 Improper Privilege Management
CVE-2012-2312 2024-11-21 10:38 2019-12-19 Show GitHub Exploit DB Packet Storm
296672 6.1 MEDIUM
Network
mahara
debian
mahara
debian_linux
Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.4.x before 1.4.3 and 1.5.x before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) javasc… CWE-79
Cross-site Scripting
CVE-2012-2237 2024-11-21 10:38 2019-12-18 Show GitHub Exploit DB Packet Storm
296673 3.3 LOW
Local
redhat jboss_community_application_server
jboss_enterprise_web_server
An issue exists in the property replacements feature in any descriptor in JBoxx AS 7.1.1 ignores java security policies CWE-269
 Improper Privilege Management
CVE-2012-2148 2024-11-21 10:38 2019-12-7 Show GitHub Exploit DB Packet Storm
296674 7.4 HIGH
Network
polarssl
debian
fedoraproject
polarssl
debian_linux
fedora
A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating Diffie-Hellman values and RSA keys. CWE-326
Inadequate Encryption Strength
CVE-2012-2130 2024-11-21 10:38 2019-12-7 Show GitHub Exploit DB Packet Storm
296675 5.9 MEDIUM
Network
canonical ubuntu_cobbler A Security Bypass vulnerability exists in Ubuntu Cobbler before 2,2,2 in the cobbler-ubuntu-import script due to an error when verifying the GPG signature. CWE-347
 Improper Verification of Cryptographic Signature
CVE-2012-2092 2024-11-21 10:38 2019-12-7 Show GitHub Exploit DB Packet Storm
296676 8.1 HIGH
Network
dhclient_project
debian
dhclient
debian_linux
An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable. CWE-20
 Improper Input Validation 
CVE-2012-2248 2024-11-21 10:38 2019-11-28 Show GitHub Exploit DB Packet Storm
296677 8.8 HIGH
Network
drupal activity A cross-site request forgery (CSRF) vulnerability in the Activity module 6.x-1.x for Drupal. CWE-352
 Origin Validation Error
CVE-2012-2079 2024-11-21 10:38 2019-11-22 Show GitHub Exploit DB Packet Storm
296678 4.8 MEDIUM
Network
drupal activity Cross-site scripting (XSS) vulnerability in the Activity module 6.x-1.x for Drupal. CWE-79
Cross-site Scripting
CVE-2012-2078 2024-11-21 10:38 2019-11-22 Show GitHub Exploit DB Packet Storm
296679 7.5 HIGH
Network
pam_shield_project
debian
pam_shield
debian_linux
pam_shield before 0.9.4: Default configuration does not perform protective action CWE-20
 Improper Input Validation 
CVE-2012-2350 2024-11-21 10:38 2019-11-21 Show GitHub Exploit DB Packet Storm
296680 7.5 HIGH
Network
tryton trytond trytond 2.4: ModelView.button fails to validate authorization CWE-863
 Incorrect Authorization
CVE-2012-2238 2024-11-21 10:38 2019-11-21 Show GitHub Exploit DB Packet Storm