Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 12:06 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224331 5.8 警告 アップル
jabberd 2.x project
- jabberd2 の s2s/out.c におけるドメインになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-3525 2013-04-2 16:38 2012-08-25 Show GitHub Exploit DB Packet Storm
224332 5 警告 PostgreSQL.org
アップル
- PostgreSQL のコアサーバコンポーネントにおける任意のファイルの存在を特定される脆弱性 CWE-20
不適切な入力確認
CVE-2012-3489 2013-04-2 16:36 2012-08-17 Show GitHub Exploit DB Packet Storm
224333 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1079 2013-04-2 16:35 2013-02-21 Show GitHub Exploit DB Packet Storm
224334 5.8 警告 PostgreSQL.org
アップル
- PostgreSQL の contrib/xml2 におけるデータを改ざんされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3488 2013-04-2 16:34 2012-08-17 Show GitHub Exploit DB Packet Storm
224335 3.5 注意 Novell - Novell Sentinel Log Manager におけるデータ保持ポリシーを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6534 2013-04-2 16:34 2012-09-21 Show GitHub Exploit DB Packet Storm
224336 6.8 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0532 2013-04-2 16:32 2013-03-25 Show GitHub Exploit DB Packet Storm
224337 7.2 危険 IBM - IBM Security AppScan Enterprise および Rational Policy Tester における権限を取得される脆弱性 CWE-DesignError
CVE-2013-0513 2013-04-2 15:58 2013-03-25 Show GitHub Exploit DB Packet Storm
224338 4.3 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0512 2013-04-2 15:16 2013-03-25 Show GitHub Exploit DB Packet Storm
224339 6.5 警告 IBM - IBM Security AppScan Enterprise における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-0511 2013-04-2 15:12 2013-03-25 Show GitHub Exploit DB Packet Storm
224340 4.3 警告 IBM - IBM Security AppScan Enterprise におけるテストアカウントをハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0510 2013-04-2 15:11 2013-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278101 - opensuse
canonical
oracle
redhat
opensuse
ubuntu_linux
solaris
tcpdump
Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in verbose mode, allow remote attackers to cause a denial of service (segmentation fault and crash) via a… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2014-8768 2024-11-21 11:19 2014-11-21 Show GitHub Exploit DB Packet Storm
278102 - redhat tcpdump Integer underflow in the olsr_print function in tcpdump 3.9.6 through 4.6.2, when in verbose mode, allows remote attackers to cause a denial of service (crash) via a crafted length value in an OLSR f… CWE-189
Numeric Errors
CVE-2014-8767 2024-11-21 11:19 2014-11-21 Show GitHub Exploit DB Packet Storm
278103 - zte zxhn_h108l_firmware ZTE ZXHN H108L with firmware 4.0.0d_ZRQ_GR4 allows remote attackers to modify the CWMP configuration via a crafted request to Forms/access_cwmp_1. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-8493 2024-11-21 11:19 2014-11-21 Show GitHub Exploit DB Packet Storm
278104 - advantech eki-6340_firmware
eki-6340
cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell metacharacters in the pinghost parameter to ping.cgi. CWE-78
OS Command 
CVE-2014-8387 2024-11-21 11:19 2014-11-20 Show GitHub Exploit DB Packet Storm
278105 - debian
xen
opensuse
debian_linux
xen
opensuse
arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a craf… CWE-17
Code
CVE-2014-8595 2024-11-21 11:19 2014-11-20 Show GitHub Exploit DB Packet Storm
278106 - opensuse
debian
xen
opensuse
debian_linux
xen
The do_mmu_update function in arch/x86/mm.c in Xen 4.x through 4.4.x does not properly restrict updates to only PV page tables, which allows remote PV guests to cause a denial of service (NULL pointe… CWE-20
 Improper Input Validation 
CVE-2014-8594 2024-11-21 11:19 2014-11-20 Show GitHub Exploit DB Packet Storm
278107 - pandorafms pandora_flexible_monitoring_system Cross-site scripting (XSS) vulnerability in the Page visualization agents in Pandora FMS 5.1 SP1 and earlier allows remote attackers to inject arbitrary web script or HTML via the refr parameter to i… CWE-79
Cross-site Scripting
CVE-2014-8629 2024-11-21 11:19 2014-11-20 Show GitHub Exploit DB Packet Storm
278108 - mantisbt mantisbt The XML Import/Export plugin in MantisBT 1.2.x does not restrict access, which allows remote attackers to (1) upload arbitrary XML files via the import page or (2) obtain sensitive information via th… CWE-19
 Data Processing Errors
CVE-2014-8598 2024-11-21 11:19 2014-11-19 Show GitHub Exploit DB Packet Storm
278109 - freebsd freebsd FreeBSD 9.1, 9.2, and 10.0, when compiling OpenSSH with Kerberos support, uses incorrect library ordering when linking sshd, which causes symbols to be resolved incorrectly and allows remote attacker… CWE-17
Code
CVE-2014-8475 2024-11-21 11:19 2014-11-19 Show GitHub Exploit DB Packet Storm
278110 - codecanyon phpsound Multiple cross-site scripting (XSS) vulnerabilities in phpSound 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Description fields in a playlist or the (3… CWE-79
Cross-site Scripting
CVE-2014-8954 2024-11-21 11:19 2014-11-18 Show GitHub Exploit DB Packet Storm