Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224221 6.8 警告 OpenText - OpenText/IXOS ECM for SAP NetWeaver における任意の ABAP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3243 2013-10-30 16:37 2013-04-24 Show GitHub Exploit DB Packet Storm
224222 6.8 警告 KTH - WaveSurfer で使用される The Snack Sound Toolkit におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6303 2013-10-30 16:25 2013-09-11 Show GitHub Exploit DB Packet Storm
224223 6.8 警告 Aircrack-ng
Gentoo Linux
- Aircrack-ng におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1159 2013-10-30 16:15 2010-04-24 Show GitHub Exploit DB Packet Storm
224224 3.3 注意 レッドハット - Red Hat JBoss Enterprise Portal Platform のデフォルト設定における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-2102 2013-10-30 15:41 2013-10-16 Show GitHub Exploit DB Packet Storm
224225 1.9 注意 Canonical - X.org X server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-1056 2013-10-30 15:29 2013-10-17 Show GitHub Exploit DB Packet Storm
224226 3.7 注意 レッドハット - Red Hat JBoss Enterprise Application Platform および JBoss Portal における特定のアプリケーションの認証の決定を制御される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4572 2013-10-30 13:55 2013-05-20 Show GitHub Exploit DB Packet Storm
224227 4.3 警告 レッドハット - Red Hat JBoss Web におけるセッション id を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-4529 2013-10-30 13:45 2012-10-11 Show GitHub Exploit DB Packet Storm
224228 3.5 注意 Drupal - Drupal の File モジュールにおける任意のプライベートファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0827 2013-10-30 12:12 2012-02-1 Show GitHub Exploit DB Packet Storm
224229 6.8 警告 Drupal - Drupal の Aggregator モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-0826 2013-10-30 12:06 2012-02-1 Show GitHub Exploit DB Packet Storm
224230 6.8 警告 Drupal - Drupal における重要な AX 情報を変更される脆弱性 CWE-200
情報漏えい
CVE-2012-0825 2013-10-30 12:01 2012-02-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279311 - newstatpress_project newstatpress SQL injection vulnerability in includes/nsp_search.php in the NewStatPress plugin before 0.9.9 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the where1 paramet… CWE-89
SQL Injection
CVE-2015-4062 2024-11-21 11:30 2015-05-28 Show GitHub Exploit DB Packet Storm
279312 - coppermine-gallery coppermine_photo_gallery Open redirect vulnerability in mode.php in Coppermine Photo Gallery before 1.5.36 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the refere… NVD-CWE-Other
CVE-2015-3922 2024-11-21 11:30 2015-05-28 Show GitHub Exploit DB Packet Storm
279313 - coppermine-gallery coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in contact.php in Coppermine Photo Gallery before 1.5.36 allows remote authenticated users to inject arbitrary web script or HTML via the referer parameter. CWE-79
Cross-site Scripting
CVE-2015-3921 2024-11-21 11:30 2015-05-28 Show GitHub Exploit DB Packet Storm
279314 - wireshark wireshark The logcat_dump_text function in wiretap/logcat.c in the Android Logcat file parser in Wireshark 1.12.x before 1.12.5 does not properly handle a lack of \0 termination, which allows remote attackers … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-3906 2024-11-21 11:30 2015-05-27 Show GitHub Exploit DB Packet Storm
279315 - phpmyadmin phpmyadmin libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 disables X.509 certificate verification for GitHub API calls ov… CWE-310
Cryptographic Issues
CVE-2015-3903 2024-11-21 11:30 2015-05-27 Show GitHub Exploit DB Packet Storm
279316 - phpmyadmin phpmyadmin Multiple cross-site request forgery (CSRF) vulnerabilities in the setup process in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 allow remo… CWE-352
 Origin Validation Error
CVE-2015-3902 2024-11-21 11:30 2015-05-27 Show GitHub Exploit DB Packet Storm
279317 - sap afaria Buffer overflow in the XComms process in SAP Afaria 7.00.6620.2 SP5 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request, aka SAP Secu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-4092 2024-11-21 11:30 2015-05-26 Show GitHub Exploit DB Packet Storm
279318 - sap sap_netweaver_application_server_java XML external entity (XXE) vulnerability in SAP NetWeaver AS Java 7.4 allows remote attackers to send TCP requests to intranet servers or possibly have unspecified other impact via an XML request to t… NVD-CWE-Other
CVE-2015-4091 2024-11-21 11:30 2015-05-26 Show GitHub Exploit DB Packet Storm
279319 - feedwordpress_project feedwordpress SQL injection vulnerability in feedwordpresssyndicationpage.class.php in the FeedWordPress plugin before 2015.0514 for WordPress allows remote authenticated users to execute arbitrary SQL commands vi… CWE-89
SQL Injection
CVE-2015-4018 2024-11-21 11:30 2015-05-22 Show GitHub Exploit DB Packet Storm
279320 - huawei webui
e355s_mobile_wifi_firmware
Huawei E355s Mobile WiFi with firmware before 22.158.45.02.625 and WEBUI before 13.100.04.01.625 allows remote attackers to obtain sensitive configuration information by sniffing the network or sendi… CWE-200
Information Exposure
CVE-2015-3912 2024-11-21 11:30 2015-05-22 Show GitHub Exploit DB Packet Storm