Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221021 10 危険 Infoblox - Infoblox NetMRI の config/userAdmin/login.tdf における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-3418 2014-07-16 18:18 2014-05-16 Show GitHub Exploit DB Packet Storm
221022 6.2 警告 Linux - Linux kernel のケーパビリティの実装における chmod 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4014 2014-07-16 15:10 2014-06-16 Show GitHub Exploit DB Packet Storm
221023 10 危険 ラリタン・ジャパン株式会社 - Raritan PX Power Distribution ソフトウェアに cipher zero 攻撃を受ける脆弱性 CWE-287
不適切な認証
CVE-2014-2955 2014-07-16 15:09 2014-07-10 Show GitHub Exploit DB Packet Storm
221024 10 危険 Datum Systems - PSM-500 および PSM-4500 デバイス上で稼動する Datum Systems SnIP におけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2014-2951 2014-07-16 14:29 2014-07-11 Show GitHub Exploit DB Packet Storm
221025 7.8 危険 Datum Systems - PSM-500 および PSM-4500 デバイス上で稼動する Datum Systems SnIP における重要な情報を取得される脆弱性 CWE-Other
その他
CVE-2014-2950 2014-07-16 14:26 2014-07-11 Show GitHub Exploit DB Packet Storm
221026 6.8 警告 Ben Gillbanks - TimThumb および WordThumb における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-4663 2014-07-16 14:23 2014-06-26 Show GitHub Exploit DB Packet Storm
221027 5 警告 Best Practical Solutions
Alex Vandiver
- Request Tracker で使用される Email::Address::List におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-1474 2014-07-16 14:01 2014-01-15 Show GitHub Exploit DB Packet Storm
221028 4 警告 アルバネットワークス株式会社 - Aruba Networks ClearPass の Policy Manager におけるデータベースの認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4031 2014-07-16 13:58 2014-07-3 Show GitHub Exploit DB Packet Storm
221029 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager の Real-Time Monitoring Tool におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-3319 2014-07-16 12:17 2014-07-11 Show GitHub Exploit DB Packet Storm
221030 5.5 警告 シスコシステムズ - Cisco Unified Communications Manager の Dialed Number Analyzer コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-3317 2014-07-16 12:16 2014-07-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295721 - mediawiki mediawiki Cross-site scripting (XSS) vulnerability in the ZeroRatedMobileAccess extension for MediaWiki 1.19.x before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to inject ar… CWE-79
Cross-site Scripting
CVE-2013-4573 2024-11-21 10:55 2013-11-26 Show GitHub Exploit DB Packet Storm
295722 - ibus_project
opensuse
ibus
opensuse
The default configuration of IBUS 1.5.4, and possibly 1.5.2 and earlier, when IBus.InputPurpose.PASSWORD is not set and used with GNOME 3, does not obscure the entered password characters, which allo… CWE-255
Credentials Management
CVE-2013-4509 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295723 - ruby-lang ruby Heap-based buffer overflow in Ruby 1.8, 1.9 before 1.9.3-p484, 2.0 before 2.0.0-p353, 2.1 before 2.1.0 preview2, and trunk before revision 43780 allows context-dependent attackers to cause a denial o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4164 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295724 - f5
opensuse
suse
nginx
opensuse
studio_onsite
webyast
lifecycle_management_server
nginx 0.8.41 through 1.4.3 and 1.5.x before 1.5.7 allows remote attackers to bypass intended restrictions via an unescaped space character in a URI. CWE-116
 Improper Encoding or Escaping of Output
CVE-2013-4547 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295725 - robert_ancell
canonical
lightdm
ubuntu_linux
LightDM 1.7.5 through 1.8.3 and 1.9.x before 1.9.2 does not apply the AppArmor profile to the Guest account, which allows local users to bypass intended restrictions by leveraging the Guest account. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4459 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295726 - http-body_project http-body HTTP::Body::Multipart in the HTTP-Body module for Perl (1.07 through 1.22, before 1.23) uses the part of the uploaded file's name after the first "." character as the suffix of a temporary file, whic… NVD-CWE-noinfo
CVE-2013-4407 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295727 - openstack image_registry_and_delivery_service_\(glance\) The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image. CWE-20
 Improper Input Validation 
CVE-2013-4354 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295728 - ffmpeg ffmpeg The av_reallocp_array function in libavutil/mem.c in FFmpeg before 2.0.1 has an unspecified impact and remote vectors related to a "wrong return code" and a resultant NULL pointer dereference. NVD-CWE-Other
CVE-2013-4265 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295729 - ffmpeg ffmpeg The kempf_decode_tile function in libavcodec/g2meet.c in FFmpeg before 2.0.1 allows remote attackers to cause a denial of service (out-of-bounds heap write) via a G2M4 encoded file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4264 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm
295730 - ffmpeg ffmpeg libavfilter in FFmpeg before 2.0.1 has unspecified impact and remote vectors related to a crafted "plane," which triggers an out-of-bounds heap write. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4263 2024-11-21 10:55 2013-11-24 Show GitHub Exploit DB Packet Storm