Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231701 2.1 注意 Adiscon - rsyslog の imfile モジュールにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-4623 2012-09-27 16:14 2011-02-17 Show GitHub Exploit DB Packet Storm
231702 7.5 危険 The phpMyAdmin Project - phpMyAdmin における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5159 2012-09-27 16:13 2012-09-25 Show GitHub Exploit DB Packet Storm
231703 7.5 危険 Horde - 複数の Horde Project 製品における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0209 2012-09-27 16:13 2012-02-13 Show GitHub Exploit DB Packet Storm
231704 9 危険 IBM - IBM Informix Dynamic Server におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3334 2012-09-27 16:12 2012-09-25 Show GitHub Exploit DB Packet Storm
231705 9 危険 IBM - Windows 上の IBM DB2 および DB2 Connect の UTL_FILE モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3324 2012-09-27 16:11 2012-07-25 Show GitHub Exploit DB Packet Storm
231706 3.3 注意 IBM - z/OS 上で稼働する IBM WebSphere Application Server におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3311 2012-09-27 16:05 2012-09-24 Show GitHub Exploit DB Packet Storm
231707 6.8 警告 IBM - IBM WebSphere Application Server における脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3306 2012-09-27 15:48 2012-09-24 Show GitHub Exploit DB Packet Storm
231708 6.4 警告 IBM - IBM WebSphere Application Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3305 2012-09-27 15:37 2012-09-24 Show GitHub Exploit DB Packet Storm
231709 6.8 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2012-3304 2012-09-27 15:31 2012-09-24 Show GitHub Exploit DB Packet Storm
231710 10 危険 IBM - IBM WebSphere Commerce における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3298 2012-09-27 15:10 2012-09-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292861 - drupal
nancy_wichmann
realname Multiple cross-site scripting (XSS) vulnerabilities in the RealName module 6.x-1.x before 6.x-1.5 for Drupal allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) "… CWE-79
Cross-site Scripting
CVE-2012-2298 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292862 - piwigo piwigo Multiple cross-site scripting (XSS) vulnerabilities in admin.php in Piwigo before 2.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) section parameter in the configuratio… CWE-79
Cross-site Scripting
CVE-2012-2209 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292863 - piwigo piwigo Directory traversal vulnerability in upgrade.php in Piwigo before 2.3.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter. CWE-22
Path Traversal
CVE-2012-2208 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292864 - spip spip Multiple cross-site scripting (XSS) vulnerabilities in SPIP 1.9.x before 1.9.2.o, 2.0.x before 2.0.18, and 2.1.x before 2.1.13 allow remote attackers to inject arbitrary web script or HTML via unspec… CWE-79
Cross-site Scripting
CVE-2012-2151 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292865 - net-snmp net-snmp Array index error in the handle_nsExtendOutput2Table function in agent/mibgroup/agent/extend.c in Net-SNMP 5.7.1 allows remote authenticated users to cause a denial of service (out-of-bounds read and… NVD-CWE-Other
CVE-2012-2141 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292866 - python
canonical
debian
python
ubuntu_linux
debian_linux
The utf-16 decoder in Python 3.1 through 3.3 does not update the aligned_end variable after calling the unicode_decode_call_errorhandler function, which allows remote attackers to obtain sensitive in… NVD-CWE-Other
CVE-2012-2135 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292867 - larry_garfield autosave Cross-site request forgery (CSRF) vulnerability in the Autosave module 6.x before 6.x-2.10 and 7.x-2.x before 7.x-2.0 for Drupal allows remote attackers to hijack the authentication of arbitrary user… CWE-352
 Origin Validation Error
CVE-2012-2097 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292868 - lullabot fivestar_module_for_drupal The Fivestar module 6.x-1.x before 6.x-1.20 for Drupal does not properly validate voting data, which allows remote attackers to manipulate voting averages via a negative value in the vote parameter. CWE-20
 Improper Input Validation 
CVE-2012-2096 2024-11-21 10:38 2012-08-15 Show GitHub Exploit DB Packet Storm
292869 - s9y serendipity SQL injection vulnerability in serendipity/serendipity_admin.php in Serendipity before 1.6.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[plugin_to_conf] parameter. … CWE-89
SQL Injection
CVE-2012-2332 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
292870 - s9y serendipity Cross-site scripting (XSS) vulnerability in serendipity/serendipity_admin_image_selector.php in Serendipity before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the serendi… CWE-79
Cross-site Scripting
CVE-2012-2331 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm