Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220111 6.5 警告 MobFox - MobFox mAdserve における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2654 2014-04-24 18:20 2014-03-26 Show GitHub Exploit DB Packet Storm
220112 3.5 注意 IBM - IBM Sterling Order Management および Sterling Selling and Fulfillment Foundation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0932 2014-04-24 17:51 2014-04-15 Show GitHub Exploit DB Packet Storm
220113 5.5 警告 IBM - IBM Rational Software Architect Design Manager および Rational Rhapsody Design Manager におけるデータを変更される脆弱性 CWE-noinfo
情報不足
CVE-2013-5459 2014-04-24 17:50 2013-08-22 Show GitHub Exploit DB Packet Storm
220114 5.8 警告 WinSCP - WinSCP における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2014-2735 2014-04-24 17:01 2014-04-14 Show GitHub Exploit DB Packet Storm
220115 6.4 警告 Vtiger - Vtiger の modules/Users/ForgotPassword.php における任意のユーザのパスワードをリセットされる脆弱性 CWE-20
不適切な入力確認
CVE-2014-2269 2014-04-24 16:55 2014-03-16 Show GitHub Exploit DB Packet Storm
220116 7.5 危険 FitNesse - FitNesse Wiki における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2014-1216 2014-04-24 16:48 2014-02-25 Show GitHub Exploit DB Packet Storm
220117 5.8 警告 Automattic Inc. - WordPress 用 Jetpack プラグインにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0173 2014-04-24 16:41 2014-04-10 Show GitHub Exploit DB Packet Storm
220118 6.5 警告 レッドハット - JBossAS 用 JBoss Overlord Run Time Governance における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-6469 2014-04-24 16:30 2013-11-4 Show GitHub Exploit DB Packet Storm
220119 6.8 警告 アップル - Apple OS X の ImageIO におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1319 2014-04-24 15:53 2014-04-22 Show GitHub Exploit DB Packet Storm
220120 10 危険 アップル - Apple OS X の Intel Graphics Driver における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-1318 2014-04-24 15:53 2014-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292141 - supermicro intelligent_platform_management_firmware Buffer overflow in logout.cgi in the Intelligent Platform Management Interface (IPMI) with firmware before 3.15 (SMT_X9_315) on Supermicro X9 generation motherboards allows remote authenticated users… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-3622 2024-11-21 10:54 2013-12-11 Show GitHub Exploit DB Packet Storm
292142 - cmsmadesimple cms_made_simple Cross-site scripting (XSS) vulnerability in admin/editevent.php in CMS Made Simple (CMSMS) 1.11.9 allows remote authenticated users with the "Modify Events" permission to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2013-3929 2024-11-21 10:54 2013-12-10 Show GitHub Exploit DB Packet Storm
292143 - easytimestudio easy_file_manager Directory traversal vulnerability in Easytime Studio Easy File Manager 1.1 for iOS allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) to the default URI. CWE-22
Path Traversal
CVE-2013-3921 2024-11-21 10:54 2013-12-6 Show GitHub Exploit DB Packet Storm
292144 - novell open_enterprise_server The HTTPSTK service in the novell-nrm package before 2.0.2-297.305.302.3 in Novell Open Enterprise Server 2 (OES 2) Linux, and OES 11 Linux Gold and SP1, does not make the intended SSL_free and SSL_s… CWE-20
 Improper Input Validation 
CVE-2013-3707 2024-11-21 10:54 2013-12-2 Show GitHub Exploit DB Packet Storm
292145 - novell iprint The id1.GetPrinterURLList function in Novell iPrint Client before 5.93 allows remote attackers to cause a denial of service via unspecified vectors. NVD-CWE-noinfo
CVE-2013-3708 2024-11-21 10:54 2013-12-1 Show GitHub Exploit DB Packet Storm
292146 - jahia jahia_xcm Cross-site scripting (XSS) vulnerability in Jahia xCM before 6.6.2 allows remote authenticated users to inject arbitrary web script or HTML via the "about me" field. CWE-79
Cross-site Scripting
CVE-2013-3920 2024-11-21 10:54 2013-11-28 Show GitHub Exploit DB Packet Storm
292147 - ibm infosphere_master_data_management_server_for_product_information_management
infosphere_master_data_management_collaboration_server
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Server for Product Information Management 9.x before 9.1 FP13, and IBM InfoSphere Master Data Management - Collaborat… CWE-79
Cross-site Scripting
CVE-2013-4036 2024-11-21 10:54 2013-11-27 Show GitHub Exploit DB Packet Storm
292148 - savysoda wifi_free_hd Directory traversal vulnerability in SavySoda WiFi HD Free before 7.0 allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request. CWE-22
Path Traversal
CVE-2013-3923 2024-11-21 10:54 2013-11-27 Show GitHub Exploit DB Packet Storm
292149 - gummybearstudios ftp_drive_\+_http_server Directory traversal vulnerability in Gummy Bear Studios FTP Drive + HTTP Server 1.0.4 and earlier allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request. CWE-22
Path Traversal
CVE-2013-3922 2024-11-21 10:54 2013-11-26 Show GitHub Exploit DB Packet Storm
292150 - ibm java Unspecified vulnerability in IBM Java SDK 5.0.0 before SR16 FP4, 7.0.0 before SR6, 6.0.1 before SR7, and 6.0.0 before SR15 allows remote attackers to access restricted classes via unspecified vectors. NVD-CWE-noinfo
CVE-2013-4041 2024-11-21 10:54 2013-11-25 Show GitHub Exploit DB Packet Storm