Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220011 5 警告 SAP - SAP ソフトウェアデプロイメントマネージャにおけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2013-7366 2014-04-15 12:20 2013-02-21 Show GitHub Exploit DB Packet Storm
220012 4.3 警告 SAP - SAP エンタープライズポータルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7365 2014-04-15 12:20 2013-02-21 Show GitHub Exploit DB Packet Storm
220013 7.5 危険 SAP - SAP NetWeaver の J2EE エンジンの不特定の J2EE コアサービスにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7364 2014-04-15 12:19 2013-02-21 Show GitHub Exploit DB Packet Storm
220014 7.5 危険 SAP - SAP Solution Manager の Diagnostics エージェントにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-7363 2014-04-15 12:19 2013-02-21 Show GitHub Exploit DB Packet Storm
220015 7.5 危険 SAP - SAP CCMS エージェントの不特定の RFC 機能における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-7362 2014-04-15 12:18 2013-02-21 Show GitHub Exploit DB Packet Storm
220016 5 警告 SAP - SAP CMS および CM Services におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7361 2014-04-15 12:18 2013-05-11 Show GitHub Exploit DB Packet Storm
220017 7.5 危険 SAP - SAP adminadapter における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2013-7360 2014-04-15 12:17 2013-03-27 Show GitHub Exploit DB Packet Storm
220018 5 警告 SAP - SAP モバイルインフラストラクチャにおける重要なポート情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-7359 2014-04-15 12:16 2013-06-5 Show GitHub Exploit DB Packet Storm
220019 5 警告 SAP - SAP Guided Procedures Archive Monitor におけるユーザ名などの情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-7358 2014-04-15 12:16 2013-07-2 Show GitHub Exploit DB Packet Storm
220020 5 警告 SAP - SAP J2EE Engine の設定サービスにおける認証情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-7357 2014-04-15 12:15 2013-07-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292921 - ibm spss_data_collection
eclipse_help_system
Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitr… CWE-79
Cross-site Scripting
CVE-2013-0464 2024-11-21 10:47 2013-06-4 Show GitHub Exploit DB Packet Storm
292922 - ibm websphere_portal Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the server in IBM WebSphere Portal 7.0.0.x through 7.0.0.2 CF22 and 8.0.0.x through 8.0.0.1 CF5, wh… CWE-79
Cross-site Scripting
CVE-2013-0549 2024-11-21 10:47 2013-06-4 Show GitHub Exploit DB Packet Storm
292923 - ibm websphere_message_broker
websphere_application_server
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 through 8.5.0.2 and WebSphere Message Broker 6.1, 7.0 through 7.0.0.5, and 8.0 through 8.0.0.2, when WS-Securit… NVD-CWE-Other
CVE-2013-0482 2024-11-21 10:47 2013-05-29 Show GitHub Exploit DB Packet Storm
292924 - ibm rational_directory_server IBM Eclipse Help System (IEHS), as used in IBM Rational Directory Server 5.1.1 through 5.1.1.2 and 5.2 through 5.2.1 and other products, allows remote attackers to obtain sensitive information by pro… CWE-200
Information Exposure
CVE-2013-0599 2024-11-21 10:47 2013-05-29 Show GitHub Exploit DB Packet Storm
292925 - ibm websphere_datapower_xc10_appliance_firmware
websphere_datapower_xc10_appliance
websphere_datapower_service_gateway_xg45_virtual_edition_firmware
websphere_datapower_service_gateway_xg45_virt…
Cross-site scripting (XSS) vulnerability in the echo functionality on IBM WebSphere DataPower SOA appliances with firmware 3.8.2, 4.0, 4.0.1, 4.0.2, and 5.0.0 allows remote attackers to inject arbitr… CWE-79
Cross-site Scripting
CVE-2013-0499 2024-11-21 10:47 2013-05-29 Show GitHub Exploit DB Packet Storm
292926 - ibm tivoli_monitoring Cross-site scripting (XSS) vulnerability in the Tivoli Enterprise Portal browser client in IBM Tivoli Monitoring 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, and 6.2.3 through FP02 all… CWE-79
Cross-site Scripting
CVE-2013-0576 2024-11-21 10:47 2013-05-29 Show GitHub Exploit DB Packet Storm
292927 - ibm sterling_selling_and_fulfillment_foundation
sterling_multi-channel_fulfillment_solution
The Sterling Order Management APIs in IBM Sterling Multi-Channel Fulfillment Solution 8.0 before HF128 and IBM Sterling Selling and Fulfillment Foundation 8.5 before HF93, 9.0 before HF73, 9.1.0 befo… CWE-287
Improper Authentication
CVE-2013-0578 2024-11-21 10:47 2013-05-10 Show GitHub Exploit DB Packet Storm
292928 - ibm sterling_secure_proxy IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 allows remote authenticated users to obtain sensitive Java stac… CWE-20
 Improper Input Validation 
CVE-2013-0520 2024-11-21 10:47 2013-05-10 Show GitHub Exploit DB Packet Storm
292929 - ibm sterling_secure_proxy IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 provides web-server version data in (1) an unspecified page tit… CWE-200
Information Exposure
CVE-2013-0519 2024-11-21 10:47 2013-05-10 Show GitHub Exploit DB Packet Storm
292930 - ibm sterling_secure_proxy IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 does not refuse to be rendered in different-origin frames, whic… CWE-20
 Improper Input Validation 
CVE-2013-0518 2024-11-21 10:47 2013-05-10 Show GitHub Exploit DB Packet Storm