Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224321 4 警告 シーメンス - Siemens WinCC の HMI Web アプリケーションにおけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0669 2013-03-25 18:52 2013-03-15 Show GitHub Exploit DB Packet Storm
224322 4.3 警告 シーメンス - Siemens WinCC の HMI Web アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0668 2013-03-25 18:49 2013-03-15 Show GitHub Exploit DB Packet Storm
224323 5 警告 MailUp - WordPress 用 MailUp プラグインにおけるプラグインの設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2640 2013-03-25 16:43 2013-03-15 Show GitHub Exploit DB Packet Storm
224324 5 警告 MailUp - WordPress 用 MailUp プラグインにおけるプラグインの設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0731 2013-03-25 16:41 2013-03-15 Show GitHub Exploit DB Packet Storm
224325 5 警告 Piwik - Piwik における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2633 2013-03-25 16:35 2013-03-8 Show GitHub Exploit DB Packet Storm
224326 4.3 警告 Piwik - Piwik におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1844 2013-03-25 16:34 2013-03-8 Show GitHub Exploit DB Packet Storm
224327 7.2 危険 Canonical - Ubuntu で使用される pam-xdg-support における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1052 2013-03-25 16:21 2013-03-18 Show GitHub Exploit DB Packet Storm
224328 4.3 警告 Debian
Canonical
- apt におけるパッケージを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1051 2013-03-25 16:20 2013-03-14 Show GitHub Exploit DB Packet Storm
224329 6.8 警告 Google - Google Chrome で使用される Google V8 におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2013-2632 2013-03-25 16:04 2013-03-18 Show GitHub Exploit DB Packet Storm
224330 6.9 警告 XFree86 Project - XFree86 x11perf の x11perfcomp における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-2504 2013-03-25 16:02 2011-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278531 - huge-it image_gallery SQL injection vulnerability in the editgallery function in admin/gallery_func.php in the Huge-IT Image Gallery plugin 1.0.1 for WordPress allows remote authenticated users to execute arbitrary SQL co… CWE-89
SQL Injection
CVE-2014-7153 2024-11-21 11:16 2014-09-22 Show GitHub Exploit DB Packet Storm
278532 - jogoeusei questoes_oab The Questoes OAB (aka com.pedefeijao.questoesoab) application oab_android_1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof server… CWE-310
Cryptographic Issues
CVE-2014-6999 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278533 - smartstudy pinkfong_tv The PinkFong TV (aka kr.co.smartstudy.pinkfongtv_android_googlemarket) application 4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof… CWE-310
Cryptographic Issues
CVE-2014-6998 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278534 - itiw-webdev dino_village The Dino Village (aka com.tappocket.dinovillage) application 1.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain … CWE-310
Cryptographic Issues
CVE-2014-6997 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278535 - cocodigi martial_arts_battle_card The Martial Arts Battle Card (aka com.tapenjoy.zjh.tw) application 1.0.9 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and… CWE-310
Cryptographic Issues
CVE-2014-6996 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278536 - adidas adidas_eyewear The adidas eyewear (aka com.adidasep.eyewear) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sen… CWE-310
Cryptographic Issues
CVE-2014-6995 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278537 - atecea atecea The Atecea (aka com.atecea) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information… CWE-310
Cryptographic Issues
CVE-2014-6994 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278538 - codeeta codeeta_coupons The Codeeta Coupons (aka com.codeeta.promos) application 1.0.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain se… CWE-310
Cryptographic Issues
CVE-2014-6993 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278539 - timelessblack timeless_black The Timeless Black (aka com.apptive.android.apps.timeless) application 2.10.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof server… CWE-310
Cryptographic Issues
CVE-2014-6992 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm
278540 - liveauctions liveauctions.tv The LiveAuctions.tv (aka air.LiveAndroidMaxx) application 2.005 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain s… CWE-310
Cryptographic Issues
CVE-2014-6991 2024-11-21 11:15 2014-10-17 Show GitHub Exploit DB Packet Storm