Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220771 6.5 警告 Jasig - uPortal における任意のポートレットを管理される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3416 2014-06-2 15:17 2014-05-22 Show GitHub Exploit DB Packet Storm
220772 5 警告 Attiks - Drupal 用 Google Authenticator login モジュールにおけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-4178 2014-06-2 15:05 2013-05-15 Show GitHub Exploit DB Packet Storm
220773 5 警告 Attiks - Drupal 用 Google Authenticator login モジュールにおける二要素認証の要件を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4177 2014-06-2 15:05 2013-05-15 Show GitHub Exploit DB Packet Storm
220774 5 警告 シスコシステムズ - Cisco Wide Area Application Services におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3285 2014-06-2 14:26 2014-05-28 Show GitHub Exploit DB Packet Storm
220775 5.8 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の VOSS の Web フレームワークにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2014-3283 2014-06-2 14:25 2014-05-28 Show GitHub Exploit DB Packet Storm
220776 4 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の VOSS の Web フレームワークにおける重要な番号変換情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3282 2014-06-2 14:24 2014-05-28 Show GitHub Exploit DB Packet Storm
220777 5 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の VOSS の Web フレームワークにおけるアカウント名を列挙される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3279 2014-06-2 14:22 2014-05-28 Show GitHub Exploit DB Packet Storm
220778 4 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の VOSS における重要なユーザおよびグループ情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-3277 2014-06-2 14:21 2014-05-28 Show GitHub Exploit DB Packet Storm
220779 4.3 警告 Apache Software Foundation - Apache HBase における双方向認証を無効にされる脆弱性 CWE-287
不適切な認証
CVE-2013-2193 2014-06-2 14:14 2013-07-4 Show GitHub Exploit DB Packet Storm
220780 5 警告 レッドハット - FreeIPA のデフォルトの LDAP ACI におけるクロスレルムの Kerberos Trust 鍵を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0199 2014-06-2 14:05 2013-01-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295201 - sun sunos Unspecified vulnerability in Oracle Solaris 8, 9, 10, and 11 allows local users to affect availability via unknown vectors related to Libraries/Libc. NVD-CWE-noinfo
CVE-2013-3745 2024-11-21 10:54 2013-07-17 Show GitHub Exploit DB Packet Storm
295202 - anshul_sharma category-grid-view-gallery Cross-site scripting (XSS) vulnerability in includes/CatGridPost.php in the Category Grid View Gallery plugin 2.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via th… CWE-79
Cross-site Scripting
CVE-2013-4117 2024-11-21 10:54 2013-07-16 Show GitHub Exploit DB Packet Storm
295203 - linux linux_kernel The fib6_add_rt2node function in net/ipv6/ip6_fib.c in the IPv6 stack in the Linux kernel through 3.10.1 does not properly handle Router Advertisement (RA) messages in certain circumstances involving… CWE-399
 Resource Management Errors
CVE-2013-4125 2024-11-21 10:54 2013-07-16 Show GitHub Exploit DB Packet Storm
295204 - php php ext/xml/xml.c in PHP before 5.3.27 does not properly consider parsing depth, which allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other imp… CWE-787
 Out-of-bounds Write
CVE-2013-4113 2024-11-21 10:54 2013-07-13 Show GitHub Exploit DB Packet Storm
295205 - blackberry blackberry_os
z10
BlackBerry 10 OS before 10.0.10.648 on BlackBerry Z10 smartphones uses weak permissions for a BlackBerry Protect object, which allows physically proximate attackers to bypass intended access restrict… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3692 2024-11-21 10:54 2013-07-13 Show GitHub Exploit DB Packet Storm
295206 - sharp aquos_hn-pp150_firmware
aquos_hn-pp150
The Sharp AQUOS PhotoPlayer HN-PP150 with firmware before 1.04.00.04 allows remote attackers to cause a denial of service (networking outage) via crafted packet data. NVD-CWE-noinfo
CVE-2013-3655 2024-11-21 10:54 2013-07-13 Show GitHub Exploit DB Packet Storm
295207 - phpmyadmin phpmyadmin Cross-site scripting (XSS) vulnerability in view_create.php (aka the Create View page) in phpMyAdmin 4.x before 4.0.3 allows remote authenticated users to inject arbitrary web script or HTML via an i… CWE-79
Cross-site Scripting
CVE-2013-3742 2024-11-21 10:54 2013-07-4 Show GitHub Exploit DB Packet Storm
295208 - atlassian crowd Atlassian Crowd 2.6.3 allows remote attackers to execute arbitrary commands via unspecified vectors related to a "symmetric backdoor." NOTE: as of 20130704, the vendor could not reproduce the issue,… NVD-CWE-Other
CVE-2013-3926 2024-11-21 10:54 2013-07-2 Show GitHub Exploit DB Packet Storm
295209 - atlassian crowd Atlassian Crowd 2.5.x before 2.5.4, 2.6.x before 2.6.3, 2.3.8, and 2.4.9 allows remote attackers to read arbitrary files and send HTTP requests to intranet servers via a request to (1) /services/2 or… CWE-20
 Improper Input Validation 
CVE-2013-3925 2024-11-21 10:54 2013-07-2 Show GitHub Exploit DB Packet Storm
295210 - lockon ec-cube Multiple cross-site scripting (XSS) vulnerabilities in the RecommendSearch feature in the management screen in LOCKON EC-CUBE before 2.12.5 allow remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2013-3653 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm