Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218921 7.5 危険 FreePBX - FreePBX の admin/libraries/view.functions.php における任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1903 2014-02-20 15:57 2014-02-6 Show GitHub Exploit DB Packet Storm
218922 7.5 危険 The PHP Group - PHP の ext/gd/gd.c の gdImageCrop 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-7327 2014-02-20 15:53 2013-12-28 Show GitHub Exploit DB Packet Storm
218923 7.5 危険 The PHP Group - PHP の ext/gd/gd.c の gdImageCrop 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-7226 2014-02-20 15:52 2013-12-26 Show GitHub Exploit DB Packet Storm
218924 3.5 注意 IBM - IBM Security Access Manager for Enterprise Single Sign-On の IMS サーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6745 2014-02-20 15:15 2013-12-20 Show GitHub Exploit DB Packet Storm
218925 5 警告 IBM - IBM WebSphere Portal における重要な Java Content Repository 情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6735 2014-02-20 15:11 2013-12-20 Show GitHub Exploit DB Packet Storm
218926 4.3 警告 レッドハット - Red Hat sos パッケージの sosreport ユーティリティにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2011-4083 2014-02-20 14:43 2011-12-6 Show GitHub Exploit DB Packet Storm
218927 4.3 警告 Mozilla Foundation - Mozilla Thunderbird にメッセージ内の HTML 要素を適切にブロックしない脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6674 2014-02-20 14:03 2014-01-27 Show GitHub Exploit DB Packet Storm
218928 4.3 警告 phpMyFAQ - phpMyFAQ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0814 2014-02-20 13:59 2014-02-7 Show GitHub Exploit DB Packet Storm
218929 2.6 注意 phpMyFAQ - phpMyFAQ におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0813 2014-02-20 13:57 2014-02-7 Show GitHub Exploit DB Packet Storm
218930 4.3 警告 デル - DELL SonicWALL GMS/Analyzer/UMA にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0332 2014-02-20 13:55 2014-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292671 - apple iphone_os UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a … CWE-310
Cryptographic Issues
CVE-2012-3746 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292672 - apple iphone_os Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflow and connectivity outage) via a crafted user-data header in an SMS message. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3745 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292673 - apple iphone_os Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return addre… NVD-CWE-Other
CVE-2012-3744 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292674 - apple iphone_os The System Logs implementation in Apple iOS before 6 does not restrict /var/log access by sandboxed apps, which allows remote attackers to obtain sensitive information via a crafted app that reads lo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3743 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292675 - apple iphone_os Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to the https lock indicator, which allows remote attackers to spoof https connection… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3742 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292676 - apple iphone_os The Restrictions (aka Parental Controls) implementation in Apple iOS before 6 does not properly handle purchase attempts after a Disable Restrictions action, which allows local users to bypass an int… CWE-287
Improper Authentication
CVE-2012-3741 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292677 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement via unspecified … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3740 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292678 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passcode requirement via vectors involving use of the camera. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3739 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292679 - apple iphone_os The Emergency Dialer screen in the Passcode Lock implementation in Apple iOS before 6 does not properly limit the dialing methods, which allows physically proximate attackers to bypass intended acces… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3738 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
292680 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6 does not properly restrict photo viewing, which allows physically proximate attackers to view arbitrary stored photos by spoofing a time value. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3737 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm