Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219971 2.6 注意 Apache Software Foundation - Apache Subversion 用 mod_dontdothat の is_this_legal 関数におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4505 2014-04-7 17:32 2013-11-25 Show GitHub Exploit DB Packet Storm
219972 1.8 注意 Memcached - Memcached におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-7291 2014-04-7 17:23 2013-12-20 Show GitHub Exploit DB Packet Storm
219973 1.8 注意 Memcached - Memcached の items.c の do_item_get 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-7290 2014-04-7 17:21 2013-12-20 Show GitHub Exploit DB Packet Storm
219974 4.8 警告 Memcached - Memcached における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-7239 2014-04-7 17:20 2013-12-20 Show GitHub Exploit DB Packet Storm
219975 5 警告 The PHP Group
アップル
- PHP の SOAP パーサにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-1643 2014-04-7 17:18 2013-02-21 Show GitHub Exploit DB Packet Storm
219976 7.5 危険 The PHP Group
アップル
- PHP の ext/soap/soap.c におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1635 2014-04-7 17:17 2013-02-21 Show GitHub Exploit DB Packet Storm
219977 5.8 警告 シーメンス - Siemens SIMATIC S7-1500 CPU PLC デバイスのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2249 2014-04-7 17:05 2014-03-12 Show GitHub Exploit DB Packet Storm
219978 7.1 危険 ZyXEL - ZyXEL P660 シリーズにサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3588 2014-04-7 15:44 2014-04-1 Show GitHub Exploit DB Packet Storm
219979 7.5 危険 CA Technologies - CA ERwin Web Portal におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2210 2014-04-7 15:04 2014-04-3 Show GitHub Exploit DB Packet Storm
219980 5 警告 シスコシステムズ - Cisco IOS および IOS XE の IKE の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-2143 2014-04-7 14:58 2014-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294651 - rockwellautomation plc-5_controller
ab_micrologix_controller
slc_500_controller
Rockwell Automation Allen-Bradley MicroLogix controller 1100, 1200, 1400, and 1500; SLC 500 controller platform; and PLC-5 controller platform, when Static status is not enabled, allow remote attacke… CWE-16
Configuration
CVE-2012-4690 2024-11-21 10:43 2012-12-9 Show GitHub Exploit DB Packet Storm
294652 - postoaktraffic awam_bluetooth_reader Post Oak AWAM Bluetooth Reader Traffic System does not use a sufficient source of entropy for private keys, which makes it easier for man-in-the-middle attackers to spoof a device by predicting a key… CWE-310
Cryptographic Issues
CVE-2012-4687 2024-11-21 10:43 2012-12-9 Show GitHub Exploit DB Packet Storm
294653 - vmware springsource_spring_security DaoAuthenticationProvider in VMware SpringSource Spring Security before 2.0.8, 3.0.x before 3.0.8, and 3.1.x before 3.1.3 does not check the password if the user is not found, which makes the respons… CWE-200
Information Exposure
CVE-2012-5055 2024-11-21 10:43 2012-12-6 Show GitHub Exploit DB Packet Storm
294654 - forescout counteract The Forescout CounterACT NAC device 6.3.4.1 does not block ARP and ICMP traffic from unrecognized clients, which allows remote attackers to conduct ARP poisoning attacks via crafted packets. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4985 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294655 - forescout counteract Multiple cross-site scripting (XSS) vulnerabilities on the Forescout CounterACT NAC device before 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the a parameter to assets/l… CWE-79
Cross-site Scripting
CVE-2012-4983 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294656 - forescout counteract Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL i… CWE-20
 Improper Input Validation 
CVE-2012-4982 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294657 - ibm rational_developer_for_system_z The Host Connect emulator in IBM Rational Developer for System z 7.1 through 8.5.1 does not properly store the SSL certificate password, which allows local users to obtain sensitive information via u… CWE-255
Credentials Management
CVE-2012-4862 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294658 - emc rsa_netwitness_informer The web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to conduct clickjacking attacks via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2012-4609 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294659 - emc rsa_netwitness_informer Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to hijack the authentication of arbitrary users. CWE-352
 Origin Validation Error
CVE-2012-4608 2024-11-21 10:43 2012-12-5 Show GitHub Exploit DB Packet Storm
294660 - python keyring Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack. CWE-310
Cryptographic Issues
CVE-2012-4571 2024-11-21 10:43 2012-12-1 Show GitHub Exploit DB Packet Storm