Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219131 7.5 危険 Drupal - form_mail Drupal Module における CRLF インジェクションの脆弱性 - CVE-2006-3473 2014-03-11 17:43 2006-07-10 Show GitHub Exploit DB Packet Storm
219132 7.5 危険 mybulletinboard - MyBulletinBoard におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2006-3420 2014-03-11 17:43 2006-07-7 Show GitHub Exploit DB Packet Storm
219133 5.4 警告 マイクロソフト - Windows XP および 2003 におけるバッファオーバーフローの脆弱性 - CVE-2006-3351 2014-03-11 17:43 2006-07-6 Show GitHub Exploit DB Packet Storm
219134 4.3 警告 ajax softwares - AliPAGER におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3345 2014-03-11 17:43 2006-07-3 Show GitHub Exploit DB Packet Storm
219135 2.6 注意 Atlassian - Atlassian JIRA におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3338 2014-03-11 17:43 2006-07-3 Show GitHub Exploit DB Packet Storm
219136 6.8 警告 DeltaScripts - PHP/MySQL Classifieds におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3330 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
219137 4.3 警告 e-cbd.biz - Custom dating biz dating script におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3327 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
219138 5 警告 id software - id3 Quake 3 Engine および Icculus Quake 3 Engine における書き込み保護された任意の変数を上書きされる脆弱性 - CVE-2006-3325 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
219139 2.6 注意 sitebar - SiteBar におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3320 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
219140 5 警告 comscripts - CS-Forum における CRLF インジェクションの脆弱性 - CVE-2006-3171 2014-03-11 17:43 2006-06-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294621 - xen xen (1) TMEMC_SAVE_GET_CLIENT_WEIGHT, (2) TMEMC_SAVE_GET_CLIENT_CAP, (3) TMEMC_SAVE_GET_CLIENT_FLAGS and (4) TMEMC_SAVE_END in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS… CWE-20
 Improper Input Validation 
CVE-2012-3497 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
294622 - citrix
xen
xenserver
xen
XENMEM_populate_physmap in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when translating paging mode is not used, allows local PV OS guest kernels to cause a denial of service (BUG … CWE-16
Configuration
CVE-2012-3496 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
294623 - xen
citrix
xen
xenserver
The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the return value of the get_free_pirq function as an array index without checking th… CWE-20
 Improper Input Validation 
CVE-2012-3495 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
294624 - xen
citrix
xen
xenserver
The set_debugreg hypercall in include/asm-x86/debugreg.h in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when running on x86-64 systems, allows local OS guest users to cause a denia… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3494 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
294625 - redhat jboss_enterprise_data_services_platform The Teiid Java Database Connectivity (JDBC) socket, as used in JBoss Enterprise Data Services Platform before 5.3.0, does not encrypt login messages by default contrary to documentation and specifica… CWE-310
Cryptographic Issues
CVE-2012-3431 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
294626 - fedoraproject
dokuwiki
fedora
dokuwiki
doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers to obtain sensitive information via the prefix parameter, which reveals the inst… CWE-200
Information Exposure
CVE-2012-3354 2024-11-21 10:40 2012-11-20 Show GitHub Exploit DB Packet Storm
294627 - ibm websphere_application_server The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, and WebSphere Virtual Enterprise, allows remote attackers to cause a denial of se… NVD-CWE-noinfo
CVE-2012-3330 2024-11-21 10:40 2012-11-14 Show GitHub Exploit DB Packet Storm
294628 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
The Java servlets in the management console in IBM Tivoli Federated Identity Manager (TFIM) through 6.2.2 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) before 6.2.2 do not require a… CWE-287
Improper Authentication
CVE-2012-3315 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm
294629 - hp performance_insight Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via u… NVD-CWE-noinfo
CVE-2012-3270 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm
294630 - hp performance_insight Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via u… NVD-CWE-noinfo
CVE-2012-3269 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm