Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220051 2.6 注意 Gretech - GOM Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3899 2014-08-13 18:28 2014-08-6 Show GitHub Exploit DB Packet Storm
220052 7.1 危険 SUBNET Solutions - SUBNET SubSTATION Server の Telegyr 8979 Master Protocol アプリケーションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-2357 2014-08-13 16:16 2014-07-15 Show GitHub Exploit DB Packet Storm
220053 6.5 警告 シスコシステムズ - Cisco Unity Connection の Web フレームワークにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3336 2014-08-13 16:16 2014-08-11 Show GitHub Exploit DB Packet Storm
220054 9 危険 シスコシステムズ - Cisco Unity Connection のサーバにおける特権的アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3333 2014-08-13 16:15 2014-08-7 Show GitHub Exploit DB Packet Storm
220055 4 警告 シスコシステムズ - Cisco Unified Communications Manager における検知されない同時ログインを確立される脆弱性 CWE-noinfo
情報不足
CVE-2014-3332 2014-08-13 16:15 2014-08-7 Show GitHub Exploit DB Packet Storm
220056 5 警告 シスコシステムズ - Nexus 9000 スイッチ上で稼動する Cisco NX-OS におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3330 2014-08-13 16:14 2014-08-5 Show GitHub Exploit DB Packet Storm
220057 7.8 危険 シスコシステムズ - Cisco IOS および IOS XE の EnergyWise モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3327 2014-08-13 16:14 2014-08-6 Show GitHub Exploit DB Packet Storm
220058 4.6 警告 ヒューレット・パッカード - HP Application Lifecycle Management における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-2631 2014-08-13 16:12 2014-08-5 Show GitHub Exploit DB Packet Storm
220059 4.4 警告 ヒューレット・パッカード - HP Operations Agent における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-2630 2014-08-13 16:12 2014-08-7 Show GitHub Exploit DB Packet Storm
220060 4 警告 ヒューレット・パッカード - HP Enterprise Maps における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-2628 2014-08-13 16:11 2014-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291161 8.8 HIGH
Network
openwebanalytics open_web_analytics Open Web Analytics (OWA) before 1.5.6 improperly generates random nonce values, which makes it easier for remote attackers to bypass a CSRF protection mechanism by leveraging knowledge of an OWA user… CWE-352
 Origin Validation Error
CVE-2014-1457 2024-11-21 11:04 2018-03-21 Show GitHub Exploit DB Packet Storm
291162 8.1 HIGH
Network
eventum_project eventum htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the hostname parameter. CWE-275
 Permission Issues
CVE-2014-1632 2024-11-21 11:04 2018-02-1 Show GitHub Exploit DB Packet Storm
291163 7.5 HIGH
Network
eventum_project eventum Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php. CWE-275
 Permission Issues
CVE-2014-1631 2024-11-21 11:04 2018-02-1 Show GitHub Exploit DB Packet Storm
291164 7.5 HIGH
Network
technicolor tc7200_firmware Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information. CWE-200
Information Exposure
CVE-2014-1677 2024-11-21 11:04 2017-04-4 Show GitHub Exploit DB Packet Storm
291165 - nokia_maps_\&_places_project nokia_maps_\&_places Open redirect vulnerability in nokia-mapsplaces.php in the Nokia Maps & Places plugin 1.6.6 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks… NVD-CWE-Other
CVE-2014-1750 2024-11-21 11:04 2015-07-1 Show GitHub Exploit DB Packet Storm
291166 - linuxcontainers
canonical
cgmanager
ubuntu_linux
cmanager 0.32 does not properly enforce nesting when modifying cgroup properties, which allows local users to set cgroup values for all cgroups via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1425 2024-11-21 11:04 2015-01-8 Show GitHub Exploit DB Packet Storm
291167 - open-xchange open-xchange_appsuite Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite before 7.2.2-rev31, 7.4.0 before 7.4.0-rev27, and 7.4.1 before 7.4.1-rev17 allows remote attackers to inject arbitrary web scrip… CWE-79
Cross-site Scripting
CVE-2014-1679 2024-11-21 11:04 2015-01-6 Show GitHub Exploit DB Packet Storm
291168 - maxthon maxthon_cloud_browser The Maxthon Cloud Browser application before 4.1.6.2000 for Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses the history API. CWE-284
Improper Access Control
CVE-2014-1449 2024-11-21 11:04 2014-12-26 Show GitHub Exploit DB Packet Storm
291169 - mozilla network_security_services The definite_length_decoder function in lib/util/quickder.c in Mozilla Network Security Services (NSS) before 3.16.2.4 and 3.17.x before 3.17.3 does not ensure that the DER encoding of an ASN.1 lengt… NVD-CWE-Other
CVE-2014-1569 2024-11-21 11:04 2014-12-16 Show GitHub Exploit DB Packet Storm
291170 - mozilla firefox
firefox_esr
thunderbird
Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, and Thunderbird before 31.3 on Apple OS X 10.10 omit a CoreGraphics disable-logging action that is needed by jemalloc-based applications, wh… CWE-199
 Information Management Errors
CVE-2014-1595 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm