Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220151 7.5 危険 The Foreman - Foreman における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-0171 2014-05-9 16:21 2013-01-23 Show GitHub Exploit DB Packet Storm
220152 3.6 注意 The Foreman - Foreman のスマートプロキシにおけるファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5477 2014-05-9 16:20 2012-11-7 Show GitHub Exploit DB Packet Storm
220153 4.7 警告 IBM - IBM AIX および VIOS の ptrace システムコールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-0930 2014-05-9 14:11 2014-05-2 Show GitHub Exploit DB Packet Storm
220154 2.6 注意 Novell - Novell Open Enterprise Server の Novell Client for Linux の /opt/novell/ncl/bin/nwrights における S 権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-0595 2014-05-9 12:28 2014-04-21 Show GitHub Exploit DB Packet Storm
220155 7.6 危険 シマンテック - Symantec Critical System Protection におけるポリシー設定を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5016 2014-05-9 12:14 2013-07-29 Show GitHub Exploit DB Packet Storm
220156 4.3 警告 シスコシステムズ - Telco および Wireless 用 Cisco Broadcast Access Center の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2191 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
220157 6.8 警告 シスコシステムズ - Telco および Wireless 用 Cisco Broadcast Access Center の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2190 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
220158 6.8 警告 シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアにおけるファイルを読まれる脆弱性 CWE-287
不適切な認証
CVE-2014-2181 2014-05-8 18:44 2014-05-7 Show GitHub Exploit DB Packet Storm
220159 5 警告 シスコシステムズ - VMware 用 Cisco Nexus 1000V InterCloud における ACL 拒否のステートメントを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0685 2014-05-8 18:43 2014-05-6 Show GitHub Exploit DB Packet Storm
220160 4.6 警告 シスコシステムズ - Cisco Nexus 7000 スイッチ上で稼働する Cisco NX-OS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0684 2014-05-8 18:43 2014-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292641 - lennart_poettering
redhat
rkit
enterprise_linux
RealtimeKit (aka rtkit) 0.5 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess Po… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4326 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
292642 - spice-gtk_project
redhat
spice-gtk
enterprise_linux
spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API function, which allows local users to bypass intended access restrictions by l… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4324 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
292643 - redhat
canonical
libvirt
ubuntu_linux
enterprise_linux
libvirt 1.0.5.x before 1.0.5.6, 0.10.2.x before 0.10.2.8, and 0.9.12.x before 0.9.12.2 allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4311 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
292644 - opensuse
polkit_project
canonical
redhat
opensuse
polkit
ubuntu_linux
enterprise_linux
Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is perf… CWE-362
Race Condition
CVE-2013-4288 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
292645 - xen xen The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the correct variable for the source effective address, which allows local HVM guests to obtain hypervisor stack information by r… CWE-200
Information Exposure
CVE-2013-4361 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
292646 - xen xen Xen 4.3.x and earlier does not properly handle certain errors, which allows local HVM guests to obtain hypervisor stack memory via a (1) port or (2) memory mapped I/O write or (3) other unspecified o… CWE-200
Information Exposure
CVE-2013-4355 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
292647 - redhat jboss_enterprise_web_platform
jboss_enterprise_brms_platform
jboss_enterprise_soa_platform
jboss_enterprise_application_platform
The org.jboss.remoting.transport.socket.ServerThread class in Red Hat JBoss Remoting for Red Hat JBoss SOA Platform 5.3.1 GA, Web Platform 5.2.0, Enterprise Application Platform 5.2.0, and other prod… NVD-CWE-noinfo
CVE-2013-4210 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
292648 - polarssl polarssl The x509parse_crt function in x509.h in PolarSSL 1.1.x before 1.1.7 and 1.2.x before 1.2.8 does not properly parse certificate messages during the SSL/TLS handshake, which allows remote attackers to … CWE-20
 Improper Input Validation 
CVE-2013-4623 2024-11-21 10:55 2013-10-1 Show GitHub Exploit DB Packet Storm
292649 - werner_baumann davfs2 WEB-DAV Linux File System (davfs2) 1.4.6 and 1.4.7 allow local users to gain privileges via unknown attack vectors in (1) kernel_interface.c and (2) mount_davfs.c, related to the "system" function. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4362 2024-11-21 10:55 2013-10-1 Show GitHub Exploit DB Packet Storm
292650 - openstack
fedoraproject
canonical
redhat
keystone
fedora
ubuntu_linux
openstack
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, and Havana before havana-3 does not properly revoke user tokens when a tenant is disabled, which allows remote authenticated users … CWE-522
 Insufficiently Protected Credentials
CVE-2013-4222 2024-11-21 10:55 2013-10-1 Show GitHub Exploit DB Packet Storm