Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220281 6.4 警告 オラクル - Oracle Virtualization の Oracle Secure Global Desktop における Workspace Web Application に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2439 2014-04-17 15:19 2014-04-15 Show GitHub Exploit DB Packet Storm
220282 6.6 警告 オラクル - Oracle Database Server の Core RDBMS における Create Session および Grant Any Object Privilege に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2408 2014-04-17 15:01 2014-04-15 Show GitHub Exploit DB Packet Storm
220283 8.5 危険 オラクル - Oracle Database Server の Core RDBMS における Create Session などに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2406 2014-04-17 15:01 2014-04-15 Show GitHub Exploit DB Packet Storm
220284 7.9 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける任意のコードを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0356 2014-04-17 10:59 2014-04-11 Show GitHub Exploit DB Packet Storm
220285 7.9 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0355 2014-04-17 10:58 2014-04-11 Show GitHub Exploit DB Packet Storm
220286 7.8 危険 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける index.asp のログインアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0354 2014-04-17 10:57 2014-04-11 Show GitHub Exploit DB Packet Storm
220287 6.1 警告 ZyXEL - ZyXEL Wireless N300 NetUSB NBG-419N ルータのファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0353 2014-04-17 10:57 2014-04-11 Show GitHub Exploit DB Packet Storm
220288 9 危険 Xangati - Xangati XSR および XNR における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0359 2014-04-17 09:27 2014-04-14 Show GitHub Exploit DB Packet Storm
220289 7.8 危険 Xangati - Xangati XSR および XNR におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0358 2014-04-17 09:26 2014-04-14 Show GitHub Exploit DB Packet Storm
220290 1.5 注意 Ontario Systems - Ontario Systems Artiva Agency に認証不備の脆弱性 - CVE-2014-0348 2014-04-17 09:25 2014-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295831 - apache apache_axis2\/c Apache Axis2/C does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attack… CWE-310
Cryptographic Issues
CVE-2012-6107 2024-11-21 10:45 2014-09-30 Show GitHub Exploit DB Packet Storm
295832 - babygekko baby_gekko Multiple cross-site scripting (XSS) vulnerabilities in Baby Gekko before 1.2.2f allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/index.php or the (2) us… CWE-79
Cross-site Scripting
CVE-2012-5700 2024-11-21 10:45 2014-09-23 Show GitHub Exploit DB Packet Storm
295833 - apache commons-httpclient http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltNa… CWE-20
 Improper Input Validation 
CVE-2012-6153 2024-11-21 10:45 2014-09-5 Show GitHub Exploit DB Packet Storm
295834 - zpanelcp zpanel SQL injection vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the inEmailAddress parameter in an UpdateClient action in the manage_clients mod… CWE-89
SQL Injection
CVE-2012-5685 2024-11-21 10:45 2014-08-14 Show GitHub Exploit DB Packet Storm
295835 - zpanelcp zpanel Cross-site scripting (XSS) vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the inFullname parameter in an UpdateAccountSettings action in… CWE-79
Cross-site Scripting
CVE-2012-5684 2024-11-21 10:45 2014-08-14 Show GitHub Exploit DB Packet Storm
295836 - zpanelcp zpanel Multiple cross-site request forgery (CSRF) vulnerabilities in ZPanel 10.0.1 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) create new FTP user… CWE-352
 Origin Validation Error
CVE-2012-5683 2024-11-21 10:45 2014-08-14 Show GitHub Exploit DB Packet Storm
295837 - ingy spoon Spoon::Cookie in the Spoon module 0.24 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly… CWE-94
Code Injection
CVE-2012-6143 2024-11-21 10:45 2014-06-5 Show GitHub Exploit DB Packet Storm
295838 - jochen_wiedmann html\ Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not p… CWE-94
Code Injection
CVE-2012-6142 2024-11-21 10:45 2014-06-5 Show GitHub Exploit DB Packet Storm
295839 - stephen_adkins app\ The App::Context module 0.01 through 0.968 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request to (1) App::Sessio… CWE-94
Code Injection
CVE-2012-6141 2024-11-21 10:45 2014-06-5 Show GitHub Exploit DB Packet Storm
295840 - nero mediahome Nero MediaHome 4.5.8.0 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an HTTP header without a name. NVD-CWE-Other
CVE-2012-5877 2024-11-21 10:45 2014-05-30 Show GitHub Exploit DB Packet Storm