Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231701 2.1 注意 Adiscon - rsyslog の imfile モジュールにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-4623 2012-09-27 16:14 2011-02-17 Show GitHub Exploit DB Packet Storm
231702 7.5 危険 The phpMyAdmin Project - phpMyAdmin における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5159 2012-09-27 16:13 2012-09-25 Show GitHub Exploit DB Packet Storm
231703 7.5 危険 Horde - 複数の Horde Project 製品における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0209 2012-09-27 16:13 2012-02-13 Show GitHub Exploit DB Packet Storm
231704 9 危険 IBM - IBM Informix Dynamic Server におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3334 2012-09-27 16:12 2012-09-25 Show GitHub Exploit DB Packet Storm
231705 9 危険 IBM - Windows 上の IBM DB2 および DB2 Connect の UTL_FILE モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3324 2012-09-27 16:11 2012-07-25 Show GitHub Exploit DB Packet Storm
231706 3.3 注意 IBM - z/OS 上で稼働する IBM WebSphere Application Server におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3311 2012-09-27 16:05 2012-09-24 Show GitHub Exploit DB Packet Storm
231707 6.8 警告 IBM - IBM WebSphere Application Server における脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3306 2012-09-27 15:48 2012-09-24 Show GitHub Exploit DB Packet Storm
231708 6.4 警告 IBM - IBM WebSphere Application Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3305 2012-09-27 15:37 2012-09-24 Show GitHub Exploit DB Packet Storm
231709 6.8 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2012-3304 2012-09-27 15:31 2012-09-24 Show GitHub Exploit DB Packet Storm
231710 10 危険 IBM - IBM WebSphere Commerce における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3298 2012-09-27 15:10 2012-09-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292791 - freso languageicons Cross-site scripting (XSS) vulnerability in the Language Icons module 6.x-2.x before 6.x-2.1 and 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with administer languages permissi… CWE-79
Cross-site Scripting
CVE-2012-2065 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292792 - mark_theunissen views_lang_switch Cross-site scripting (XSS) vulnerability in theme/views_lang_switch.theme.inc in the Views Language Switcher module before 7.x-1.2 for Drupal allows remote attackers to inject arbitrary web script or… CWE-79
Cross-site Scripting
CVE-2012-2064 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292793 - brian_altenhofel slidebox The Slidebox module before 7.x-1.4 for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2063 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292794 - buddypress buddypress SQL injection vulnerability in wp-load.php in the BuddyPress plugin 1.5.x before 1.5.5 of WordPress allows remote attackers to execute arbitrary SQL commands via the page parameter in an activity_wid… CWE-89
SQL Injection
CVE-2012-2109 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292795 - emc networker Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specif… CWE-134
Use of Externally-Controlled Format String
CVE-2012-2288 2024-11-21 10:38 2012-09-4 Show GitHub Exploit DB Packet Storm
292796 - yaniv_aran-shamir gigya Cross-site scripting (XSS) vulnerability in the Gigya - Social optimization module 6.x before 6.x-3.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-2117 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292797 - commerceguys commerce_reorder Cross-site request forgery (CSRF) vulnerability in the Commerce Reorder module before 7.x-1.1 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that add … CWE-352
 Origin Validation Error
CVE-2012-2116 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292798 - etalabs musl Stack-based buffer overflow in fprintf in musl before 0.8.8 and earlier allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2114 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292799 - fusiondrupalthemes fusion Cross-site scripting (XSS) vulnerability in the fusion_core_preprocess_page function in fusion_core/template.php in the Fusion module before 6.x-1.13 for Drupal allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-2083 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292800 - asterisk
sangoma
open_source
asterisk
certified_asterisk
digiumphones
business_edition
Incomplete blacklist vulnerability in main/manager.c in Asterisk Open Source 1.8.x before 1.8.15.1 and 10.x before 10.7.1, Certified Asterisk 1.8.11 before 1.8.11-cert6, Asterisk Digiumphones 10.x.x-… NVD-CWE-Other
CVE-2012-2186 2024-11-21 10:38 2012-08-31 Show GitHub Exploit DB Packet Storm