Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220851 4.3 警告 Kajona - Kajona の System モジュール の system/class_link.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4742 2014-07-11 12:07 2014-06-8 Show GitHub Exploit DB Packet Storm
220852 - - PNP4Nagios - ** 削除 ** PNP4Nagios の share/pnp/application/views/kohana_error_page.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2014-4740 2014-07-11 11:56 2014-04-6 Show GitHub Exploit DB Packet Storm
220853 7.5 危険 Another Awesome Stuff - ZeroCMS の zero_transact_article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4194 2014-07-11 11:33 2014-06-20 Show GitHub Exploit DB Packet Storm
220854 5.8 警告 FoeCMS - FoeCMS の msg.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2014-4851 2014-07-11 11:27 2014-07-4 Show GitHub Exploit DB Packet Storm
220855 4.3 警告 FoeCMS - FoeCMS の msg.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4849 2014-07-11 11:26 2014-07-4 Show GitHub Exploit DB Packet Storm
220856 7.5 危険 FoeCMS - FoeCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4850 2014-07-11 11:25 2014-07-4 Show GitHub Exploit DB Packet Storm
220857 4.3 警告 シスコシステムズ - Cisco Small Business SPA300 および SPA500 シリーズの IP phone の Web ユーザインターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3313 2014-07-10 18:21 2014-07-9 Show GitHub Exploit DB Packet Storm
220858 6.9 警告 シスコシステムズ - Cisco Small Business SPA300 および SPA500 phone のデバッグコンソールインターフェースにおける任意の debug シェルコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2014-3312 2014-07-10 18:20 2014-07-9 Show GitHub Exploit DB Packet Storm
220859 5 警告 シスコシステムズ - Cisco IOS および IOS XE の NTP の実装における時刻同期の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3309 2014-07-10 18:19 2014-07-9 Show GitHub Exploit DB Packet Storm
220860 7.8 危険 ネットギア - Netgear GS105PE Prosafe Plus Switch に認証情報がハードコードされている問題 CWE-255
CWE-Other
CVE-2014-2969 2014-07-10 17:10 2014-07-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293631 - ibm filenet_p8_business_process_manager
filenet_case_foundation
filenet_content_manager
Cross-site scripting (XSS) vulnerability in FileNet P8 Platform Documentation Installable Info Center 4.5.1 through 5.2.0 in IBM FileNet Business Process Manager 4.5.1 through 5.1.0, FileNet Content … CWE-79
Cross-site Scripting
CVE-2013-6746 2024-11-21 10:59 2014-01-22 Show GitHub Exploit DB Packet Storm
293632 - asus tm-ac1900_firmware
rt-n56u_firmware
rt-ac66u_firmware
Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow remote attackers to execute arbitrary code via the (1) apps_name or (2) apps_f… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6343 2024-11-21 10:59 2014-01-22 Show GitHub Exploit DB Packet Storm
293633 - seagate blackarmor_nas_220_firmware
blackarmor_nas_220
Multiple cross-site request forgery (CSRF) vulnerabilities in the Seagate BlackArmor NAS 220 devices with firmware sg2000-2000.1331 allow remote attackers to hijack the authentication of administrato… CWE-352
 Origin Validation Error
CVE-2013-6922 2024-11-21 10:59 2014-01-22 Show GitHub Exploit DB Packet Storm
293634 - o-dyn collabtive SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a projectpdf action. CWE-89
SQL Injection
CVE-2013-6872 2024-11-21 10:59 2014-01-22 Show GitHub Exploit DB Packet Storm
293635 - pixman
canonical
debian
redhat
opensuse
pixman
ubuntu_linux
debian_linux
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_server_aus
enterprise_linux_server_tus
enterprise_linux_desktop
enterpri…
Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and cairo, allows context-dependent attackers to cause a denial of service (crash) v… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2013-6425 2024-11-21 10:59 2014-01-19 Show GitHub Exploit DB Packet Storm
293636 - pixman
debian
opensuse
canonical
pixman
debian_linux
opensuse
ubuntu_linux
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value. CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2013-6424 2024-11-21 10:59 2014-01-19 Show GitHub Exploit DB Packet Storm
293637 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application Server 7.x before 7.0.0.31, 8.0.x before 8.0.0.8, and 8.5.x before 8.5.5.2 allows remote authentica… CWE-79
Cross-site Scripting
CVE-2013-6725 2024-11-21 10:59 2014-01-17 Show GitHub Exploit DB Packet Storm
293638 - ibm websphere_application_server IBM WebSphere Application Server 7.x before 7.0.0.31, when simpleFileServlet static file caching is enabled, allows remote authenticated users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2013-6330 2024-11-21 10:59 2014-01-17 Show GitHub Exploit DB Packet Storm
293639 - ibm websphere_application_server IBM WebSphere Application Server 7.x before 7.0.0.31, 8.0.x before 8.0.0.8, and 8.5.x before 8.5.5.2 allows remote attackers to cause a denial of service (resource consumption) via a crafted request … CWE-20
 Improper Input Validation 
CVE-2013-6325 2024-11-21 10:59 2014-01-17 Show GitHub Exploit DB Packet Storm
293640 - cisco webex_meetings_server The web portal in the Enterprise License Manager component in Cisco WebEx Meetings Server allows remote authenticated users to discover the cleartext administrative password by reading HTML source co… CWE-255
Credentials Management
CVE-2013-6687 2024-11-21 10:59 2014-01-17 Show GitHub Exploit DB Packet Storm