Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219891 7.5 危険 PHP-Fusion - PHP-Fusion の includes/classes/Authenticate.class.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7375 2014-05-8 12:21 2013-02-16 Show GitHub Exploit DB Packet Storm
219892 7.5 危険 PHP-Fusion - PHP-Fusion における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-1803 2014-05-8 12:20 2013-01-27 Show GitHub Exploit DB Packet Storm
219893 7.5 危険 LiveZilla - LiveZilla の _lib/functions.global.inc.php の setCookieValue 関数における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-7034 2014-05-8 12:11 2013-12-10 Show GitHub Exploit DB Packet Storm
219894 4.3 警告 LiveZilla - LiveZilla におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7003 2014-05-8 12:10 2013-12-10 Show GitHub Exploit DB Packet Storm
219895 6.8 警告 Sitepark - Sitepark Information Enterprise Server における manager アカウントのパスワードを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3006 2014-05-8 11:40 2014-04-3 Show GitHub Exploit DB Packet Storm
219896 6.3 警告 David Leonard - pktstat の tmp_smtp.c における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2013-0350 2014-05-8 11:34 2013-02-23 Show GitHub Exploit DB Packet Storm
219897 4.3 警告 Fedora Project
Randall Hand
- Yerase's TNEF Stream Reader の ytnef.c 内の DecompressRTF 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-5109 2014-05-8 11:21 2010-02-11 Show GitHub Exploit DB Packet Storm
219898 6.8 警告 phpList - phpList の subscription page editor におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2916 2014-05-8 11:04 2014-04-21 Show GitHub Exploit DB Packet Storm
219899 6.8 警告 Debian - xbuffy 用の特定の Debian パッチにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0469 2014-05-8 10:56 2014-04-21 Show GitHub Exploit DB Packet Storm
219900 5.8 警告 FreeBSD - FreeBSD のデバイスファイルシステムにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3001 2014-05-8 10:39 2014-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294151 - php php ext/soap/soap.c in PHP before 5.3.22 and 5.4.x before 5.4.13 does not validate the relationship between the soap.wsdl_cache_dir directive and the open_basedir directive, which allows remote attackers… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1635 2024-11-21 10:50 2013-03-6 Show GitHub Exploit DB Packet Storm
294152 - todd_miller
apple
sudo
mac_os_x
sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1775 2024-11-21 10:50 2013-03-6 Show GitHub Exploit DB Packet Storm
294153 - linux
redhat
linux_kernel
enterprise_linux
enterprise_mrg
The chase_port function in drivers/usb/serial/io_ti.c in the Linux kernel before 3.7.4 allows local users to cause a denial of service (NULL pointer dereference and system crash) via an attempted /de… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1774 2024-11-21 10:50 2013-03-1 Show GitHub Exploit DB Packet Storm
294154 - linux
redhat
linux_kernel
enterprise_linux
enterprise_mrg
Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1773 2024-11-21 10:50 2013-03-1 Show GitHub Exploit DB Packet Storm
294155 - linux linux_kernel The log_prefix function in kernel/printk.c in the Linux kernel 3.x before 3.4.33 does not properly remove a prefix string from a syslog header, which allows local users to cause a denial of service (… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1772 2024-11-21 10:50 2013-03-1 Show GitHub Exploit DB Packet Storm
294156 - linux linux_kernel Use-after-free vulnerability in the shmem_remount_fs function in mm/shmem.c in the Linux kernel before 3.7.10 allows local users to gain privileges or cause a denial of service (system crash) by remo… CWE-399
 Resource Management Errors
CVE-2013-1767 2024-11-21 10:50 2013-03-1 Show GitHub Exploit DB Packet Storm
294157 - linux linux_kernel Array index error in the __sock_diag_rcv_msg function in net/core/sock_diag.c in the Linux kernel before 3.7.10 allows local users to gain privileges via a large family value in a Netlink message. CWE-20
 Improper Input Validation 
CVE-2013-1763 2024-11-21 10:50 2013-03-1 Show GitHub Exploit DB Packet Storm
294158 - vmware vcenter_server
vcenter_server_appliance
esxi
VMware vCenter Server 4.0 before Update 4b, 5.0 before Update 2, and 5.1 before 5.1.0b; VMware ESXi 3.5 through 5.1; and VMware ESX 3.5 through 4.1 do not properly implement the Network File Copy (NF… NVD-CWE-Other
CVE-2013-1659 2024-11-21 10:50 2013-02-23 Show GitHub Exploit DB Packet Storm
294159 - bouncycastle legion-of-the-bouncy-castle-java-crytography-api
legion-of-the-bouncy-castle-c\#-cryptography-api
The TLS implementation in the Bouncy Castle Java library before 1.48 and C# library before 1.8 does not properly consider timing side-channel attacks on a noncompliant MAC check operation during the … CWE-310
Cryptographic Issues
CVE-2013-1624 2024-11-21 10:50 2013-02-9 Show GitHub Exploit DB Packet Storm
294160 - yassl cyassl The TLS and DTLS implementations in wolfSSL CyaSSL before 2.5.0 do not properly consider timing side-channel attacks on a noncompliant MAC check operation during the processing of malformed CBC paddi… CWE-310
Cryptographic Issues
CVE-2013-1623 2024-11-21 10:50 2013-02-9 Show GitHub Exploit DB Packet Storm