Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220421 6.8 警告 アップル - 複数の Apple 製品の Secure Transport における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-1295 2014-04-24 15:51 2014-04-22 Show GitHub Exploit DB Packet Storm
220422 6.8 警告 CubeCart Limited - CubeCar における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2014-2341 2014-04-24 11:42 2014-04-10 Show GitHub Exploit DB Packet Storm
220423 6.4 警告 pimcore - pimcore の Pimcore_Tool_Newsletter モジュールにおける PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2922 2014-04-24 10:22 2014-04-11 Show GitHub Exploit DB Packet Storm
220424 7.5 危険 pimcore - pimcore の Pimcore_Tool_Newsletter モジュールにおける PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-2921 2014-04-24 10:21 2014-04-11 Show GitHub Exploit DB Packet Storm
220425 4 警告 MediaWiki - MediaWiki の includes/specials/SpecialChangePassword.php における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-2665 2014-04-23 20:02 2014-03-28 Show GitHub Exploit DB Packet Storm
220426 4 警告 Mozilla Foundation - Bugzilla のログインフォームにおける重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-1517 2014-04-23 20:00 2014-04-17 Show GitHub Exploit DB Packet Storm
220427 5 警告 シーメンス - Siemens SINEMA サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2733 2014-04-23 19:56 2014-04-15 Show GitHub Exploit DB Packet Storm
220428 5 警告 シーメンス - Siemens SINEMA サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2732 2014-04-23 19:55 2014-04-15 Show GitHub Exploit DB Packet Storm
220429 9.3 危険 シーメンス - Siemens SINEMA サーバの統合 Web サーバにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-2731 2014-04-23 19:55 2014-04-15 Show GitHub Exploit DB Packet Storm
220430 5.5 警告 Moxi9 - PHPFox の static/ajax.php における "Only Me" 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7196 2014-04-23 19:23 2013-12-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293421 - cisco finesse Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka Bug ID CSCug16732. CWE-255
Credentials Management
CVE-2013-3455 2024-11-21 10:53 2013-08-12 Show GitHub Exploit DB Packet Storm
293422 - mikejolley download_monitor Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the p parame… CWE-79
Cross-site Scripting
CVE-2013-3262 2024-11-21 10:53 2013-08-10 Show GitHub Exploit DB Packet Storm
293423 - sagelighteditor sagelight Integer overflow in Sagelight 4.4 and earlier allows remote attackers to execute arbitrary code via crafted width and height dimensions in a BMP file, which triggers a heap-based buffer overflow. CWE-189
Numeric Errors
CVE-2013-3480 2024-11-21 10:53 2013-08-10 Show GitHub Exploit DB Packet Storm
293424 - xhanch my_twitter Cross-site request forgery (CSRF) vulnerability in admin/setting.php in the Xhanch - My Twitter plugin before 2.7.7 for WordPress allows remote attackers to hijack the authentication of administrator… CWE-352
 Origin Validation Error
CVE-2013-3253 2024-11-21 10:53 2013-08-10 Show GitHub Exploit DB Packet Storm
293425 - shareaholic sexybookmarks Cross-site request forgery (CSRF) vulnerability in the Shareaholic SexyBookmarks plugin 6.1.4.0 for WordPress allows remote attackers to hijack the authentication of users for requests that "manipula… CWE-352
 Origin Validation Error
CVE-2013-3256 2024-11-21 10:53 2013-08-9 Show GitHub Exploit DB Packet Storm
293426 - cisco telepresence_system_tx9000
telepresence_system_tx9200
telepresence_system_software
telepresence_system_1300
telepresence_system_1300-65
telepresence_system_3000
telepresence_system_…
Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which ma… CWE-255
Credentials Management
CVE-2013-3454 2024-11-21 10:53 2013-08-8 Show GitHub Exploit DB Packet Storm
293427 - cisco unified_communications_manager Cross-site request forgery (CSRF) vulnerability in the User WebDialer page in Cisco Unified Communications Manager (Unified CM) allows remote attackers to hijack the authentication of arbitrary users… CWE-352
 Origin Validation Error
CVE-2013-3450 2024-11-21 10:53 2013-08-5 Show GitHub Exploit DB Packet Storm
293428 - cisco unified_communications_manager Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco Unified Communications Manager (Unified CM) allow remote attackers to hijack the authentication of arbitrary users for requests tha… CWE-352
 Origin Validation Error
CVE-2013-3451 2024-11-21 10:53 2013-08-5 Show GitHub Exploit DB Packet Storm
293429 - cisco unified_communications_manager The web portal in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to obtain sensitive stack-trace information via unspecified vectors that trigger a stack exceptio… CWE-200
Information Exposure
CVE-2013-3442 2024-11-21 10:53 2013-08-5 Show GitHub Exploit DB Packet Storm
293430 - cisco webex_meetings_server Cisco WebEx Meetings Server does not check whether a user account is active, which allows remote authenticated users to bypass intended access restrictions by performing meeting operations after acco… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3448 2024-11-21 10:53 2013-08-2 Show GitHub Exploit DB Packet Storm