Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219861 7.5 危険 SAP - SAP ERP 用 SAP エンハンスメントパッケージのセキュリティ監査ログ機能における任意のログクラスを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-2748 2014-04-14 17:21 2014-03-9 Show GitHub Exploit DB Packet Storm
219862 4.3 警告 フォーティネット - Fortinet FortiADC にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0331 2014-04-14 15:53 2014-04-11 Show GitHub Exploit DB Packet Storm
219863 9.3 危険 マイクロソフト - Microsoft Word および Office 互換機能パックにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1757 2014-04-11 15:54 2014-04-8 Show GitHub Exploit DB Packet Storm
219864 4.3 警告 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0509 2014-04-11 15:46 2014-04-8 Show GitHub Exploit DB Packet Storm
219865 5 警告 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0508 2014-04-11 15:45 2014-04-8 Show GitHub Exploit DB Packet Storm
219866 9.3 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0507 2014-04-11 15:44 2014-04-8 Show GitHub Exploit DB Packet Storm
219867 10 危険 マイクロソフト
アドビシステムズ
Google
- Windows 上で稼働する Adobe Flash Player における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-0506 2014-04-11 15:44 2014-03-13 Show GitHub Exploit DB Packet Storm
219868 6.4 警告 WordPress.org - WordPress の wp-includes/pluggable.php 内の wp_validate_auth_cookie 関数におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-0166 2014-04-11 15:33 2014-04-6 Show GitHub Exploit DB Packet Storm
219869 4 警告 WordPress.org - WordPress における投稿を公開される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0165 2014-04-11 15:32 2014-04-8 Show GitHub Exploit DB Packet Storm
219870 7.5 危険 Google - Google Chrome で使用される Free(b)soft Laboratory Speech Dispatcher におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-1724 2014-04-11 14:58 2014-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295341 - cisco ios
unified_communications_manager
ios_xe
The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1; Cisco IOS 12.2 through 12.4 and 15.0 through 15.2… CWE-20
 Improper Input Validation 
CVE-2012-3949 2024-11-21 10:41 2012-09-27 Show GitHub Exploit DB Packet Storm
295342 - apple iphone_os WebKit, as used in Apple iOS before 6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. CWE-119
CWE-399
Incorrect Access of Indexable Resource ('Range Error') 
 Resource Management Errors
CVE-2012-3747 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295343 - apple iphone_os UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a … CWE-310
Cryptographic Issues
CVE-2012-3746 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295344 - apple iphone_os Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflow and connectivity outage) via a crafted user-data header in an SMS message. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3745 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295345 - apple iphone_os Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return addre… NVD-CWE-Other
CVE-2012-3744 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295346 - apple iphone_os The System Logs implementation in Apple iOS before 6 does not restrict /var/log access by sandboxed apps, which allows remote attackers to obtain sensitive information via a crafted app that reads lo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3743 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295347 - apple iphone_os Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to the https lock indicator, which allows remote attackers to spoof https connection… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3742 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295348 - apple iphone_os The Restrictions (aka Parental Controls) implementation in Apple iOS before 6 does not properly handle purchase attempts after a Disable Restrictions action, which allows local users to bypass an int… CWE-287
Improper Authentication
CVE-2012-3741 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295349 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6 does not properly manage the lock state, which allows physically proximate attackers to bypass an intended passcode requirement via unspecified … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3740 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
295350 - apple iphone_os The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passcode requirement via vectors involving use of the camera. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3739 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm