Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219021 6.8 警告 アップル - 複数の Apple 製品の Secure Transport における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-1295 2014-04-24 15:51 2014-04-22 Show GitHub Exploit DB Packet Storm
219022 6.8 警告 CubeCart Limited - CubeCar における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2014-2341 2014-04-24 11:42 2014-04-10 Show GitHub Exploit DB Packet Storm
219023 6.4 警告 pimcore - pimcore の Pimcore_Tool_Newsletter モジュールにおける PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2922 2014-04-24 10:22 2014-04-11 Show GitHub Exploit DB Packet Storm
219024 7.5 危険 pimcore - pimcore の Pimcore_Tool_Newsletter モジュールにおける PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-2921 2014-04-24 10:21 2014-04-11 Show GitHub Exploit DB Packet Storm
219025 4 警告 MediaWiki - MediaWiki の includes/specials/SpecialChangePassword.php における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-2665 2014-04-23 20:02 2014-03-28 Show GitHub Exploit DB Packet Storm
219026 4 警告 Mozilla Foundation - Bugzilla のログインフォームにおける重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-1517 2014-04-23 20:00 2014-04-17 Show GitHub Exploit DB Packet Storm
219027 5 警告 シーメンス - Siemens SINEMA サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2733 2014-04-23 19:56 2014-04-15 Show GitHub Exploit DB Packet Storm
219028 5 警告 シーメンス - Siemens SINEMA サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2732 2014-04-23 19:55 2014-04-15 Show GitHub Exploit DB Packet Storm
219029 9.3 危険 シーメンス - Siemens SINEMA サーバの統合 Web サーバにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-2731 2014-04-23 19:55 2014-04-15 Show GitHub Exploit DB Packet Storm
219030 5.5 警告 Moxi9 - PHPFox の static/ajax.php における "Only Me" 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7196 2014-04-23 19:23 2013-12-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291861 - windriver vxworks The WebCLI component in Wind River VxWorks 5.5 through 6.9 allows remote authenticated users to cause a denial of service (CLI session crash) via a crafted command string. CWE-20
 Improper Input Validation 
CVE-2013-0715 2024-11-21 10:48 2013-03-21 Show GitHub Exploit DB Packet Storm
291862 - windriver vxworks IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to execute arbitrary code or cause a denial of service (daemon hang) via a crafted public-key authentication r… CWE-20
 Improper Input Validation 
CVE-2013-0714 2024-11-21 10:48 2013-03-21 Show GitHub Exploit DB Packet Storm
291863 - windriver vxworks IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote authenticated users to cause a denial of service (daemon outage) via a crafted pty request. CWE-20
 Improper Input Validation 
CVE-2013-0713 2024-11-21 10:48 2013-03-21 Show GitHub Exploit DB Packet Storm
291864 - windriver vxworks IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote authenticated users to cause a denial of service (daemon outage) via a crafted packet. CWE-20
 Improper Input Validation 
CVE-2013-0712 2024-11-21 10:48 2013-03-21 Show GitHub Exploit DB Packet Storm
291865 - windriver vxworks IPSSH (aka the SSH server) in Wind River VxWorks 6.5 through 6.9 allows remote attackers to cause a denial of service (daemon outage) via a crafted authentication request. CWE-20
 Improper Input Validation 
CVE-2013-0711 2024-11-21 10:48 2013-03-21 Show GitHub Exploit DB Packet Storm
291866 - apple iphone_os
tvos
The IOUSBDeviceFamily driver in the USB implementation in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 accesses pipe object pointers that originated in userspace, which allows local… NVD-CWE-noinfo
CVE-2013-0981 2024-11-21 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm
291867 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6.1.3 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement by leveragin… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0980 2024-11-21 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm
291868 - apple iphone_os lockdownd in Lockdown in Apple iOS before 6.1.3 does not properly consider file types during the permission-setting step of a backup restoration, which allows local users to change the permissions of… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0979 2024-11-21 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm
291869 - apple iphone_os
tvos
The ARM prefetch abort handler in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not ensure that it has been invoked in an abort context, which makes it easier for local users to… CWE-200
Information Exposure
CVE-2013-0978 2024-11-21 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm
291870 - apple iphone_os
tvos
dyld in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not properly manage the state of file loading for Mach-O executable files, which allows local users to bypass intended code-signing requi… NVD-CWE-noinfo
CVE-2013-0977 2024-11-21 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm