Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219261 7.5 危険 Construtiva Internet Software - Construtiva CIS Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3749 2014-05-22 15:13 2014-05-16 Show GitHub Exploit DB Packet Storm
219262 6.8 警告 マイクロソフト - Microsoft Visual Studio で配布される Microsoft Debug Interface Access SDK おける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-3802 2014-05-22 14:40 2014-05-14 Show GitHub Exploit DB Packet Storm
219263 6.8 警告 Beetel - Beetel 450TC2 ルータのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3792 2014-05-22 14:35 2014-04-30 Show GitHub Exploit DB Packet Storm
219264 5.8 警告 Zenoss, Inc. - Zenoss の zport/acl_users/cookieAuthHelper/login_form におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2014-3739 2014-05-22 12:14 2014-05-14 Show GitHub Exploit DB Packet Storm
219265 4.3 警告 Zenoss, Inc. - Zenoss におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3738 2014-05-22 12:13 2014-05-14 Show GitHub Exploit DB Packet Storm
219266 10 危険 ジュニパーネットワークス - Juniper Junos Space における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-3412 2014-05-22 11:48 2014-05-14 Show GitHub Exploit DB Packet Storm
219267 4.3 警告 Seo Panel - Seo Panel におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1855 2014-05-22 11:32 2014-05-14 Show GitHub Exploit DB Packet Storm
219268 4.3 警告 日立 - Hitachi Web Server のステータス情報表示機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-5752
CVE-2007-5809
2014-05-21 18:27 2007-10-5 Show GitHub Exploit DB Packet Storm
219269 4.3 警告 IBM
Apache Software Foundation
富士通
サイバートラスト株式会社
サン・マイクロシステムズ
ターボリナックス
ヒューレット・パッカード
オラクル
日立
レッドハット
- Apache HTTP Server の mod_status モジュールにおけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5752 2014-05-21 18:26 2007-06-26 Show GitHub Exploit DB Packet Storm
219270 2.6 注意 日立 - Hitachi Web Server のリバースプロキシにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-2364 2014-05-21 18:24 2009-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296201 - cisco application_control_engine_software Cisco Application Control Engine (ACE) before A4(2.3) and A5 before A5(1.1), when multicontext mode is enabled, does not properly share a management IP address among multiple contexts, which allows r… CWE-362
Race Condition
CVE-2012-3063 2024-11-21 10:40 2012-06-21 Show GitHub Exploit DB Packet Storm
296202 - cisco adaptive_security_appliance_software
5500_series_adaptive_security_appliance
catalyst_6500
catalyst_6503-e
catalyst_6504-e
catalyst_6506-e
catalyst_6509-e
catalyst_6509-neb-a
Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.4 before 8.4(4.1), 8.5 before 8.5(1.11), and 8… NVD-CWE-noinfo
CVE-2012-3058 2024-11-21 10:40 2012-06-21 Show GitHub Exploit DB Packet Storm
296203 - innominate mguard_firmware The Innominate mGuard Smart HW before HW-101130 and BD before BD-101030, mGuard industrial RS, mGuard delta HW before HW-103060 and BD before BD-211010, mGuard PCI, mGuard blade, and EAGLE mGuard app… CWE-310
Cryptographic Issues
CVE-2012-3006 2024-11-21 10:40 2012-06-20 Show GitHub Exploit DB Packet Storm
296204 - ioquake3 ioquake3_engine ioquake3 before r2253 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ioq3.pid temporary file. CWE-59
Link Following
CVE-2012-3345 2024-11-21 10:40 2012-06-15 Show GitHub Exploit DB Packet Storm
296205 - vmware workstation
player
esx
esxi
VMware Workstation 8.x before 8.0.4, VMware Player 4.x before 4.0.4, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 allow remote attackers to cause a denial of service (guest OS crash) v… CWE-94
Code Injection
CVE-2012-3289 2024-11-21 10:40 2012-06-15 Show GitHub Exploit DB Packet Storm
296206 - vmware workstation
player
fusion
esx
esxi
VMware Workstation 7.x before 7.1.6 and 8.x before 8.0.4, VMware Player 3.x before 3.1.6 and 4.x before 4.0.4, VMware Fusion 4.x before 4.1.3, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through … CWE-20
 Improper Input Validation 
CVE-2012-3288 2024-11-21 10:40 2012-06-15 Show GitHub Exploit DB Packet Storm
296207 - efstechnology autoform_pdm_archive AutoFORM PDM Archive before 7.0 implements user accounts in a way that allows for JMX Console authentication, which allows remote authenticated users to bypass intended access restrictions via the /j… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3347 2024-11-21 10:40 2012-06-14 Show GitHub Exploit DB Packet Storm
296208 - poul-henning_kamp md5crypt Poul-Henning Kamp md5crypt has insufficient algorithmic complexity and a consequently short runtime, which makes it easier for context-dependent attackers to discover cleartext passwords via a brute-… CWE-310
Cryptographic Issues
CVE-2012-3287 2024-11-21 10:40 2012-06-14 Show GitHub Exploit DB Packet Storm
296209 - bmc identity_management_suite Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite 7.5.00.103 allows remote attackers to hijack the authentication of administrato… CWE-352
 Origin Validation Error
CVE-2012-2959 2024-11-21 10:40 2012-06-12 Show GitHub Exploit DB Packet Storm
296210 - bloxx web_filtering Cross-site request forgery (CSRF) vulnerability in Microdasys before 3.5.1-B708, as used in Bloxx Web Filtering before 5.0.14 and other products, allows remote attackers to hijack the authentication … CWE-352
 Origin Validation Error
CVE-2012-3343 2024-11-21 10:40 2012-06-9 Show GitHub Exploit DB Packet Storm