Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220811 4.3 警告 シスコシステムズ - Cisco TelePresence Server ソフトウェアの管理 Web インタフェースのログインページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3324 2014-07-29 18:10 2014-07-24 Show GitHub Exploit DB Packet Storm
220812 6.8 警告 シスコシステムズ - Cisco WebEx Meetings Server の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3305 2014-07-29 18:10 2014-07-25 Show GitHub Exploit DB Packet Storm
220813 5 警告 シスコシステムズ - Cisco WebEx Meetings Server の ProfileAction コントローラにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3301 2014-07-29 18:09 2014-07-25 Show GitHub Exploit DB Packet Storm
220814 10 危険 Morpho - Morpho Itemiser におけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2014-2363 2014-07-29 16:45 2014-07-24 Show GitHub Exploit DB Packet Storm
220815 4.3 警告 IBM - IBM Sametime Classic Meeting Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4748 2014-07-29 15:55 2014-07-18 Show GitHub Exploit DB Packet Storm
220816 2.1 注意 IBM - IBM Sametime Classic Meeting Server におけるミーティングパスワードのハッシュを取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4747 2014-07-29 15:54 2014-07-18 Show GitHub Exploit DB Packet Storm
220817 4.3 警告 IBM - IBM InfoSphere Information Server の Data Quality Console におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3071 2014-07-29 15:52 2014-07-18 Show GitHub Exploit DB Packet Storm
220818 7.5 危険 MailPoet - WordPress 用 MailPoet Newsletters プラグインにおける脆弱性 CWE-noinfo
情報不足
CVE-2014-4726 2014-07-29 15:47 2014-07-4 Show GitHub Exploit DB Packet Storm
220819 7.5 危険 MailPoet - WordPress 用 MailPoet Newsletters プラグインにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-4725 2014-07-29 15:46 2014-07-1 Show GitHub Exploit DB Packet Storm
220820 4.3 警告 Zoho Corporation - ZOHO ManageEngine EventLog Analyzer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5103 2014-07-29 14:53 2014-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293901 9.8 CRITICAL
Network
xerox colorqube_9201_firmware
colorqube_9202_firmware
colorqube_9203_firmware
workcentre_6400_firmware
workcentre_7525_firmware
workcentre_7530_firmware
workcentre_7535_firmware
workce…
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts. CWE-798
 Use of Hard-coded Credentials
CVE-2013-6362 2024-11-21 10:59 2020-02-14 Show GitHub Exploit DB Packet Storm
293902 7.5 HIGH
Network
trendnet ts-s402_firmware TRENDnet TS-S402 has a backdoor to enable TELNET. CWE-287
Improper Authentication
CVE-2013-6360 2024-11-21 10:59 2020-02-14 Show GitHub Exploit DB Packet Storm
293903 5.9 MEDIUM
Network
mapway tube_map Tube Map Live Underground for Android before 3.0.22 has an Information Disclosure Vulnerability CWE-200
Information Exposure
CVE-2013-6681 2024-11-21 10:59 2020-02-13 Show GitHub Exploit DB Packet Storm
293904 5.3 MEDIUM
Network
mediawiki mediawiki The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain usernames via vectors related to writing the names to the DOM of… CWE-200
Information Exposure
CVE-2013-6455 2024-11-21 10:59 2020-01-29 Show GitHub Exploit DB Packet Storm
293905 6.1 MEDIUM
Network
mediawiki mediawiki Cross-site scripting (XSS) vulnerability in MediaWiki 1.19.9 before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to inject arbitrary web script or HTML via unspecifie… CWE-79
Cross-site Scripting
CVE-2013-6451 2024-11-21 10:59 2020-01-29 Show GitHub Exploit DB Packet Storm
293906 9.8 CRITICAL
Network
google android Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability NVD-CWE-Other
CVE-2013-6792 2024-11-21 10:59 2020-01-24 Show GitHub Exploit DB Packet Storm
293907 4.3 MEDIUM
Network
supermicro intelligent_platform_management_interface Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attackers to read arbitrary files via the url_name parameter. CWE-22
Path Traversal
CVE-2013-6785 2024-11-21 10:59 2020-01-24 Show GitHub Exploit DB Packet Storm
293908 7.8 HIGH
Local
splunk splunk Splunk 5.0.3 has an Unquoted Service Path in Windows for Universal Forwarder which can allow an attacker to escalate privileges CWE-269
 Improper Privilege Management
CVE-2013-6773 2024-11-21 10:59 2020-01-24 Show GitHub Exploit DB Packet Storm
293909 4.3 MEDIUM
Network
splunk splunk Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2013-6772 2024-11-21 10:59 2020-01-24 Show GitHub Exploit DB Packet Storm
293910 8.8 HIGH
Network
prestashop prestashop PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a crafted profile and then accessing it in the module/ directory. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2013-6358 2024-11-21 10:59 2020-01-24 Show GitHub Exploit DB Packet Storm