Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219981 7.8 危険 ラリタン・ジャパン株式会社 - Dominion KX2-101 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3901 2014-08-18 09:43 2014-08-12 Show GitHub Exploit DB Packet Storm
219982 7.5 危険 ZPanel Project - ZPanel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-6654 2014-08-15 18:48 2012-11-4 Show GitHub Exploit DB Packet Storm
219983 7.5 危険 ZPanel Project - ZPanel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5685 2014-08-15 18:47 2012-11-4 Show GitHub Exploit DB Packet Storm
219984 4.3 警告 ZPanel Project - ZPanel におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5684 2014-08-15 18:46 2012-11-4 Show GitHub Exploit DB Packet Storm
219985 6.8 警告 ZPanel Project - ZPanel におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-5683 2014-08-15 18:46 2012-11-4 Show GitHub Exploit DB Packet Storm
219986 7.5 危険 Biblio Autocomplete Project - Drupal 用 Biblio Autocomplete モジュールの AJAX オートコンプリートのコールバックにおけるデータにアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2014-5250 2014-08-15 18:19 2014-08-5 Show GitHub Exploit DB Packet Storm
219987 7.5 危険 Biblio Autocomplete Project - Drupal 用 Biblio Autocomplete モジュールの "Biblio self autocomplete" サブモジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5249 2014-08-15 18:19 2014-08-5 Show GitHub Exploit DB Packet Storm
219988 7.5 危険 Arial Software - Arial Software Campaign Enterprise の Campaign11.exe における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3820 2014-08-15 18:18 2012-10-18 Show GitHub Exploit DB Packet Storm
219989 4.3 警告 MyBB Group - MyBB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5248 2014-08-15 16:59 2014-08-4 Show GitHub Exploit DB Packet Storm
219990 4.3 警告 Mozilla Foundation - Bugzilla の jsonrpc.cgi の WebService/Server/JSONRPC.pm の JSONP エンドポイント内の response 関数におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-1546 2014-08-15 15:33 2014-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290931 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45731. CWE-20
 Improper Input Validation 
CVE-2014-2161 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290932 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCty45745. CWE-20
 Improper Input Validation 
CVE-2014-2160 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290933 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
The H.225 subsystem in Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted packets, aka Bug ID CSCtq78722. CWE-20
 Improper Input Validation 
CVE-2014-2159 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290934 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45720. CWE-20
 Improper Input Validation 
CVE-2014-2158 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290935 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45733. CWE-20
 Improper Input Validation 
CVE-2014-2157 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290936 - cisco telepresence_system_software
tandberg_2000_mxp
tandberg_550_mxp
tandberg_770_mxp
tandberg_880_mxp
tandberg_990_mxp
telepresence_system_1000_mxp
telepresence_system_1700_mxp
te…
Cisco TelePresence System MXP Series Software before F9.3.1 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCty45739. CWE-20
 Improper Input Validation 
CVE-2014-2156 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290937 - cybozu garoon Cybozu Garoon 3.0 through 3.7 SP3 allows remote authenticated users to bypass intended access restrictions and delete schedule information via unspecified API calls. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1989 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290938 - cybozu garoon The Phone Messages feature in Cybozu Garoon 2.0.0 through 3.7 SP2 allows remote authenticated users to cause a denial of service (resource consumption) via unspecified vectors. NVD-CWE-noinfo
CVE-2014-1988 2024-11-21 11:05 2014-05-2 Show GitHub Exploit DB Packet Storm
290939 - ajenti ajenti Cross-site scripting (XSS) vulnerability in plugins/main/content/js/ajenti.coffee in Eugene Pankov Ajenti 1.2.13 allows remote authenticated users to inject arbitrary web script or HTML via the comma… CWE-79
Cross-site Scripting
CVE-2014-2260 2024-11-21 11:05 2014-05-1 Show GitHub Exploit DB Packet Storm
290940 - fortinet fortiweb FortiGuard FortiWeb before 5.0.3 allows remote authenticated users to gain privileges via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1957 2024-11-21 11:05 2014-04-30 Show GitHub Exploit DB Packet Storm