Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224341 4.3 警告 シスコシステムズ - Cisco Identity Services Engine の captive portal アプリケーションにおける平文のユーザ名およびパスワードを破られる脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3471 2013-09-2 12:27 2013-08-28 Show GitHub Exploit DB Packet Storm
224342 7.8 危険 シスコシステムズ - Cisco Unified IP Phone 8945 のソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3468 2013-09-2 12:21 2013-08-28 Show GitHub Exploit DB Packet Storm
224343 9.3 危険 シスコシステムズ - Cisco Secure Access Control Server の EAP-FAST 認証モジュールにおける任意のコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2013-3466 2013-09-2 12:11 2013-08-28 Show GitHub Exploit DB Packet Storm
224344 7.5 危険 Adam Zaninovich - Ruby 用 sounder gem の lib/sounder/sound.rb における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-5647 2013-09-2 11:04 2013-08-9 Show GitHub Exploit DB Packet Storm
224345 3.5 注意 Roundcube.net - Roundcube Webmail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5646 2013-09-2 09:58 2013-08-4 Show GitHub Exploit DB Packet Storm
224346 4.3 警告 Roundcube.net - Roundcube Webmail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5645 2013-09-2 09:51 2013-08-1 Show GitHub Exploit DB Packet Storm
224347 7.5 危険 The Cacti Group - Cacti の cacti/host.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5589 2013-08-30 16:46 2013-08-24 Show GitHub Exploit DB Packet Storm
224348 4.3 警告 The Cacti Group - Cacti におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5588 2013-08-30 16:44 2013-08-24 Show GitHub Exploit DB Packet Storm
224349 7.8 危険 FreeBSD - FreeBSD のカーネルの SCTP の実装におけるカーネルスタックメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-5209 2013-08-30 16:42 2012-08-22 Show GitHub Exploit DB Packet Storm
224350 3.5 注意 IBM - IBM TRIRIGA Application Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4003 2013-08-30 16:40 2013-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277491 - ibm domino Open redirect vulnerability in the web server in IBM Domino 8.5 before 8.5.3 FP6 IF9 and 9.0 before 9.0.1 FP4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing att… NVD-CWE-Other
CVE-2015-2014 2024-11-21 11:26 2015-08-23 Show GitHub Exploit DB Packet Storm
277492 - hp operations_manager_i Unspecified vulnerability in HP Operations Manager i (OMi) 9.22, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to execute arbitrary code via unknown vectors. NVD-CWE-noinfo
CVE-2015-2137 2024-11-21 11:26 2015-08-23 Show GitHub Exploit DB Packet Storm
277493 - hp operations_manager_i Unspecified vulnerability in the execve system-call implementation in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors. NVD-CWE-noinfo
CVE-2015-2132 2024-11-21 11:26 2015-08-23 Show GitHub Exploit DB Packet Storm
277494 - ibm websphere_virtual_enterprise
websphere_application_server
IBM WebSphere Application Server 7.x before 7.0.0.39, 8.0.x before 8.0.0.11, and 8.5.x before 8.5.5.7 and WebSphere Virtual Enterprise before 7.0.0.7 allow remote attackers to obtain potentially sens… CWE-200
Information Exposure
CVE-2015-1932 2024-11-21 11:26 2015-08-23 Show GitHub Exploit DB Packet Storm
277495 - apache activemq Directory traversal vulnerability in the fileserver upload/download functionality for blob messages in Apache ActiveMQ 5.x before 5.11.2 for Windows allows remote attackers to create JSP files in arb… CWE-22
Path Traversal
CVE-2015-1830 2024-11-21 11:26 2015-08-20 Show GitHub Exploit DB Packet Storm
277496 - theforeman foreman Foreman before 1.7.5 allows remote authenticated users to bypass organization and location restrictions by connecting through the REST API. CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-1844 2024-11-21 11:26 2015-08-15 Show GitHub Exploit DB Packet Storm
277497 - debian
canonical
redhat
xmlsoft
oracle
apple
opensuse
fedoraproject
debian_linux
ubuntu_linux
enterprise_linux
libxml
solaris
watchos
iphone_os
mac_os_x
tvos
linux
opensuse
fedora
The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack. CWE-399
 Resource Management Errors
CVE-2015-1819 2024-11-21 11:26 2015-08-15 Show GitHub Exploit DB Packet Storm
277498 - theforeman foreman Forman before 1.7.4 does not verify SSL certificates for LDAP connections, which allows man-in-the-middle attackers to spoof LDAP servers via a crafted certificate. CWE-310
Cryptographic Issues
CVE-2015-1816 2024-11-21 11:26 2015-08-15 Show GitHub Exploit DB Packet Storm
277499 - gnu
opensuse
fedoraproject
libidn
opensuse
fedora
The stringprep_utf8_to_ucs4 function in libin before 1.31, as used in jabberd2, allows context-dependent attackers to read system memory and possibly have other unspecified impact via invalid UTF-8 c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-2059 2024-11-21 11:26 2015-08-12 Show GitHub Exploit DB Packet Storm
277500 - jabberd2 jabberd2 c2s/c2s.c in Jabber Open Source Server 2.3.2 and earlier truncates data without ensuring it remains valid UTF-8, which allows remote authenticated users to read system memory or possibly have other u… CWE-200
Information Exposure
CVE-2015-2058 2024-11-21 11:26 2015-08-12 Show GitHub Exploit DB Packet Storm