Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220041 7.5 危険 Sonatype Inc. - Sonatype Nexus OSS および Pro における任意のユーザアカウントを作成される脆弱性 CWE-noinfo
情報不足
CVE-2014-2034 2014-04-2 15:03 2014-03-3 Show GitHub Exploit DB Packet Storm
220042 3.7 注意 レッドハット - Red Hat Conga の Luci におけるセッションへのアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7347 2014-04-2 14:56 2013-01-8 Show GitHub Exploit DB Packet Storm
220043 3.7 注意 レッドハット - Red Hat Conga の Luci における権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3359 2014-04-2 14:55 2012-09-6 Show GitHub Exploit DB Packet Storm
220044 10 危険 Jgaa - War FTP Daemon におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2278 2014-04-2 14:43 2013-02-25 Show GitHub Exploit DB Packet Storm
220045 4 警告 Jgaa - War FTP Daemon におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-5141 2014-04-2 14:43 2009-09-12 Show GitHub Exploit DB Packet Storm
220046 10 危険 アライドテレシス - 複数の Allied Telesis ルータ製品における権限を取得される脆弱性 CWE-287
CWE-78
CVE-2014-1982 2014-04-2 13:41 2014-03-26 Show GitHub Exploit DB Packet Storm
220047 10 危険 Chainfire - Android 用 Chainfire SuperSU パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6775 2014-04-2 12:19 2013-11-13 Show GitHub Exploit DB Packet Storm
220048 10 危険 AndroidSU.com
Koushik Dutta
Chainfire
- Android 用 ChainsDD Superuser パッケージなどの製品における任意の .jar ファイルをロードされる脆弱性 CWE-Other
その他
CVE-2013-6774 2014-04-2 12:19 2013-11-13 Show GitHub Exploit DB Packet Storm
220049 6.8 警告 Koushik Dutta - Android 用 CyanogenMod/ClockWorkMod/Koush Superuser パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6770 2014-04-2 12:18 2013-11-13 Show GitHub Exploit DB Packet Storm
220050 10 危険 Koushik Dutta - Android 用 CyanogenMod/ClockWorkMod/Koush Superuser パッケージにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-6769 2014-04-2 12:18 2013-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295031 - apache qpid The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP connections without checking the source user ID, which allows remote attackers t… CWE-287
Improper Authentication
CVE-2012-4446 2024-11-21 10:42 2013-03-14 Show GitHub Exploit DB Packet Storm
295032 - eucalyptus eucalyptus The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows attackers to (1) delete or (2) upload snapshots. CWE-287
Improper Authentication
CVE-2012-4066 2024-11-21 10:42 2013-03-9 Show GitHub Exploit DB Packet Storm
295033 - stone-ware webnetwork Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork 6.1 before SP1 allow remote attackers to inject arbitrary web script or HTML via the blogName parameter to (1) community/bl… CWE-79
Cross-site Scripting
CVE-2012-4352 2024-11-21 10:42 2013-02-18 Show GitHub Exploit DB Packet Storm
295034 - symantec encryption_desktop
pgp_desktop
Integer overflow in pgpwded.sys in Symantec PGP Desktop 10.x and Encryption Desktop 10.3.0 before MP1 allows local users to gain privileges via a crafted application. CWE-189
Numeric Errors
CVE-2012-4351 2024-11-21 10:42 2013-02-18 Show GitHub Exploit DB Packet Storm
295035 - linux linux_kernel The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via… CWE-20
 Improper Input Validation 
CVE-2012-4398 2024-11-21 10:42 2013-02-18 Show GitHub Exploit DB Packet Storm
295036 - oracle javafx Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a diff… NVD-CWE-noinfo
CVE-2012-4305 2024-11-21 10:42 2013-02-2 Show GitHub Exploit DB Packet Storm
295037 - oracle javafx Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a diff… NVD-CWE-noinfo
CVE-2012-4301 2024-11-21 10:42 2013-02-2 Show GitHub Exploit DB Packet Storm
295038 - linux linux_kernel The KVM subsystem in the Linux kernel before 3.6.9, when running on hosts that use qemu userspace without XSAVE, allows local users to cause a denial of service (kernel OOPS) by using the KVM_SET_SRE… NVD-CWE-noinfo
CVE-2012-4461 2024-11-21 10:42 2013-01-23 Show GitHub Exploit DB Packet Storm
295039 - oracle
mariadb
mysql
mariadb
Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x through 5.2.12, 5.3.x through 5.3.7, and 5.5.x through 5… CWE-89
SQL Injection
CVE-2012-4414 2024-11-21 10:42 2013-01-23 Show GitHub Exploit DB Packet Storm
295040 - dlink dcs-932l_firmware
dcs-932l
The D-Link DCS-932L camera with firmware 1.02 allows remote attackers to discover the password via a UDP broadcast packet, as demonstrated by running the D-Link Setup Wizard and reading the _paramR["… CWE-200
Information Exposure
CVE-2012-4046 2024-11-21 10:42 2012-12-25 Show GitHub Exploit DB Packet Storm