Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220171 7.8 危険 Schneider Electric - 複数の Schneider Electric OPC Factory Server 製品におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0789 2014-04-7 12:30 2014-03-25 Show GitHub Exploit DB Packet Storm
220172 7.5 危険 The Foreman - Foreman における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5648 2014-04-7 12:21 2012-12-19 Show GitHub Exploit DB Packet Storm
220173 7.5 危険 Crowbar
Novell
- SUSE Cloud 3 で使用される Crowbar Framework 用 Barclamp におけるセキュリティグループの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0592 2014-04-7 12:01 2014-03-27 Show GitHub Exploit DB Packet Storm
220174 4.3 警告 Robert Abramski - WordPress 用 Uploader プラグインの views/notify.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2287 2014-04-7 11:52 2013-03-1 Show GitHub Exploit DB Packet Storm
220175 5 警告 Zingiri - WordPress 用 Zingiri Forum プラグインの forum.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4920 2014-04-7 11:49 2012-09-14 Show GitHub Exploit DB Packet Storm
220176 4.3 警告 dotCMS - dotCMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3484 2014-04-4 18:53 2013-06-18 Show GitHub Exploit DB Packet Storm
220177 6.8 警告 GNU Project - a2ps の fixps スクリプトにおける任意のファイルを削除される脆弱性 CWE-noinfo
情報不足
CVE-2014-0466 2014-04-4 18:24 2014-04-1 Show GitHub Exploit DB Packet Storm
220178 4.3 警告 Trojita team - Trojita の Imap/Tasks/OpenConnectionTask.cpp の OpenConnectionTask::handleStateHelper 関数における平文の使用を誘発される脆弱性 CWE-200
情報漏えい
CVE-2014-2567 2014-04-4 18:12 2014-03-20 Show GitHub Exploit DB Packet Storm
220179 10 危険 Linux - Linux Kernel の net/netfilter/nf_conntrack_proto_dccp.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2523 2014-04-4 18:09 2014-01-6 Show GitHub Exploit DB Packet Storm
220180 6.8 警告 b2evolution - b2evolution の blogs/admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7352 2014-04-4 16:19 2013-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294821 - owncloud owncloud Cross-site scripting (XSS) vulnerability in apps/user_webdavauth/settings.php in ownCloud 4.5.x before 4.5.2 allows remote attackers to inject arbitrary web script or HTML via arbitrary POST paramete… CWE-79
Cross-site Scripting
CVE-2012-5608 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294822 - owncloud owncloud The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vec… CWE-255
Credentials Management
CVE-2012-5607 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294823 - owncloud owncloud Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 4.0.9 and 4.5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) file name to apps/files_versions/js/ve… CWE-79
Cross-site Scripting
CVE-2012-5606 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294824 - gimp gimp Multiple stack-based buffer overflows in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.8.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code vi… CWE-787
 Out-of-bounds Write
CVE-2012-5576 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294825 - sensiolabs symfony lib/form/sfForm.class.php in Symfony CMS before 1.4.20 allows remote attackers to read arbitrary files via a crafted upload request. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5574 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294826 - openstack folsom OpenStack Keystone, as used in OpenStack Folsom 2012.2, does not properly implement token expiration, which allows remote authenticated users to bypass intended authorization restrictions by creating… CWE-255
Credentials Management
CVE-2012-5563 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294827 - bogofilter_project bogofilter Heap-based buffer overflow in iconvert.c in the bogolexer component in Bogofilter before 1.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5468 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294828 - perl perl Heap-based buffer overflow in the Perl_repeatcpy function in util.c in Perl 5.12.x before 5.12.5, 5.14.x before 5.14.3, and 5.15.x before 15.15.5 allows context-dependent attackers to cause a denial … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5195 2024-11-21 10:44 2012-12-18 Show GitHub Exploit DB Packet Storm
294829 - xen xen The get_page_from_gfn hypercall function in Xen 4.2 allows local PV guest OS administrators to cause a denial of service (crash) via a crafted GFN that triggers a buffer over-read. NVD-CWE-noinfo
CVE-2012-5525 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
294830 - xen xen The (1) XENMEM_decrease_reservation, (2) XENMEM_populate_physmap, and (3) XENMEM_exchange hypercalls in Xen 4.2 and earlier allow local guest administrators to cause a denial of service (long loop an… NVD-CWE-noinfo
CVE-2012-5515 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm