Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220671 6.5 警告 Ando Saabas - Sphider の admin/admin.php における任意の PHP コードを settings/conf.php に挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2014-5194 2014-08-11 11:57 2014-07-28 Show GitHub Exploit DB Packet Storm
220672 4.3 警告 Ando Saabas - Sphider の admin/admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5193 2014-08-11 11:56 2014-07-28 Show GitHub Exploit DB Packet Storm
220673 7.5 危険 Ando Saabas - Sphider の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5192 2014-08-11 11:56 2014-07-28 Show GitHub Exploit DB Packet Storm
220674 7.5 危険 Ando Saabas - 複数の Sphider 製品における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5082 2014-08-11 11:56 2014-06-20 Show GitHub Exploit DB Packet Storm
220675 7.2 危険 Ayatana Project - Ubuntu で使用される Unity におけるロック画面を回避される脆弱性 CWE-362
競合状態
CVE-2014-5195 2014-08-11 11:46 2014-07-31 Show GitHub Exploit DB Packet Storm
220676 4.3 警告 CKEditor Team - CKEditor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5191 2014-08-11 11:36 2014-07-15 Show GitHub Exploit DB Packet Storm
220677 4.3 警告 freelinking Project
Freelinking for Case Tracker Project
- Freelinking for Case Tracker モジュールで使用される Drupal 用 freelinking モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5179 2014-08-8 19:11 2014-07-23 Show GitHub Exploit DB Packet Storm
220678 6.8 警告 Debian
Canonical
- reportbug における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-0479 2014-08-8 19:11 2014-08-5 Show GitHub Exploit DB Packet Storm
220679 4.3 警告 Mike Challis - WordPress 用 SI CAPTCHA Anti-Spam プラグインの captcha-secureimage/test/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5190 2014-08-8 18:59 2014-08-3 Show GitHub Exploit DB Packet Storm
220680 7.5 危険 Ariel Sanders - WordPress 用 Lead Octopus プラグインの lib/optin/optin_page.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5189 2014-08-8 18:54 2014-07-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295021 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to gain privileges via unspecified vectors, a different vulnerability than… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5383 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295022 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to gain privileges via unspecified vectors, a different vulnerability than… NVD-CWE-noinfo
CVE-2013-5382 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295023 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.3 allows remote authenticated users to gain privileges via unspecified vectors. NVD-CWE-noinfo
CVE-2013-5381 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295024 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2013-5380 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295025 - zabbix zabbix Zabbix 2.0.5 allows remote authenticated users to discover the LDAP bind password by leveraging management-console access and reading the ldap_bind_password value in the HTML source code. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5572 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295026 - ibm spss_collaboration_and_deployment_services Unspecified vulnerability in IBM SPSS Collaboration and Deployment Services 4.2.1 and 5.0 through FP2 allows remote attackers to execute arbitrary code via unknown vectors, a different vulnerability … NVD-CWE-noinfo
CVE-2013-5370 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295027 - cisco telepresence_multipoint_switch The Media Snapshot implementation on Cisco TelePresence Multipoint Switch (CTMS) devices allows remote authenticated users to cause a denial of service (device reload) by sending many Media Snapshot … CWE-399
 Resource Management Errors
CVE-2013-5516 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295028 - x2engine x2crm Cross-site scripting (XSS) vulnerability in X2Engine X2CRM before 3.5 allows remote attackers to inject arbitrary web script or HTML via the model parameter to index.php/admin/editor. CWE-79
Cross-site Scripting
CVE-2013-5693 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295029 - x2engine x2crm Directory traversal vulnerability in X2Engine X2CRM before 3.5 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the file parameter to inde… CWE-22
Path Traversal
CVE-2013-5692 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm
295030 - simone_tellini mod_accounting SQL injection vulnerability in mod_accounting.c in the mod_accounting module 0.5 and earlier for Apache allows remote attackers to execute arbitrary SQL commands via a Host header. CWE-89
SQL Injection
CVE-2013-5697 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm