Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231681 4.3 警告 Memcache Project - Drupal 用 Memcache モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5275 2012-10-10 09:46 2010-09-29 Show GitHub Exploit DB Packet Storm
231682 9.3 危険 Krzysztof Kowalczyk - SumatraPDF におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4896 2012-10-9 18:04 2012-05-3 Show GitHub Exploit DB Packet Storm
231683 9.3 危険 Krzysztof Kowalczyk - SumatraPDF におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4895 2012-10-9 18:03 2012-05-3 Show GitHub Exploit DB Packet Storm
231684 9.3 危険 Google - Google SketchUp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-4894 2012-10-9 18:01 2012-05-23 Show GitHub Exploit DB Packet Storm
231685 7.8 危険 Google - Android の Zygote プロセスにおけるサービス運用妨害 (リブートループ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3918 2012-10-9 16:52 2012-01-27 Show GitHub Exploit DB Packet Storm
231686 9.3 危険 D-Link Systems, Inc. - D-Link DCS-5605 の Camera Stream Client ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5306 2012-10-9 16:50 2012-10-6 Show GitHub Exploit DB Packet Storm
231687 4.3 警告 JBMC Software - JBMC Software DirectAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5305 2012-10-9 16:50 2012-10-6 Show GitHub Exploit DB Packet Storm
231688 7.5 危険 Yuriy V Semenikhin - YVS Image Gallery における任意の PHP コード挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5304 2012-10-9 16:49 2012-10-6 Show GitHub Exploit DB Packet Storm
231689 7.5 危険 PostgreSQL.org - PostgreSQL JDBC ドライバにおける SQL インジェクション攻撃の脆弱性 CWE-DesignError
CVE-2012-1618 2012-10-9 16:47 2012-10-6 Show GitHub Exploit DB Packet Storm
231690 5 警告 Cerberus, LLC - Cerberus FTP Server のデフォルト設定における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-5301 2012-10-9 16:40 2012-06-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293091 - redhat
squirrelmail
enterprise_linux
squirrelmail
functions/imap_general.php in SquirrelMail, as used in Red Hat Enterprise Linux (RHEL) 4 and 5, does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial… CWE-399
 Resource Management Errors
CVE-2012-2124 2024-11-21 10:38 2013-01-18 Show GitHub Exploit DB Packet Storm
293092 - pizzashack rssh Incomplete blacklist vulnerability in rssh before 2.3.4, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via the --rsh command line option. NVD-CWE-Other
CVE-2012-2252 2024-11-21 10:38 2013-01-11 Show GitHub Exploit DB Packet Storm
293093 - pizzashack rssh rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via a (1) "-e" or (2) "--" command line option. CWE-20
 Improper Input Validation 
CVE-2012-2251 2024-11-21 10:38 2013-01-11 Show GitHub Exploit DB Packet Storm
293094 - apache cxf Apache CXF 2.4.5 through 2.4.7, 2.5.1 through 2.5.3, and 2.6.x before 2.6.1, does not properly enforce child policies of a WS-SecurityPolicy 1.1 SupportingToken policy on the client side, which allow… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2378 2024-11-21 10:38 2013-01-5 Show GitHub Exploit DB Packet Storm
293095 - apache cxf Apache CXF 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1, when a Supporting Token specifies a child WS-SecurityPolicy 1.1 or 1.2 policy, does not properly ensure that an XML element … NVD-CWE-noinfo
CVE-2012-2379 2024-11-21 10:38 2013-01-3 Show GitHub Exploit DB Packet Storm
293096 - mahara mahara Cross-site scripting (XSS) vulnerability in group/members.php in Mahara 1.5.x before 1.5.7 and 1.6.x before 1.6.2 allows remote attackers to inject arbitrary web script or HTML via the query paramete… CWE-79
Cross-site Scripting
CVE-2012-2253 2024-11-21 10:38 2012-11-25 Show GitHub Exploit DB Packet Storm
293097 - mahara mahara Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML via vectors related to artefact/file/ and a… CWE-79
Cross-site Scripting
CVE-2012-2247 2024-11-21 10:38 2012-11-25 Show GitHub Exploit DB Packet Storm
293098 - mahara mahara Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to conduct clickjacking attacks to delete arbitrary users and bypass CSRF protection via account/delete.php. CWE-20
 Improper Input Validation 
CVE-2012-2246 2024-11-21 10:38 2012-11-25 Show GitHub Exploit DB Packet Storm
293099 - mahara mahara Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary programs by modifying the path to clamav. NOTE: this can be exploited without authent… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2244 2024-11-21 10:38 2012-11-25 Show GitHub Exploit DB Packet Storm
293100 - mahara mahara Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML by uploading an XML file with the xhtml ext… CWE-79
Cross-site Scripting
CVE-2012-2243 2024-11-21 10:38 2012-11-25 Show GitHub Exploit DB Packet Storm