Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232311 5 警告 IBM - IBM WebSphere Portal の theme コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4834 2012-12-4 14:12 2012-11-29 Show GitHub Exploit DB Packet Storm
232312 5 警告 Apache Software Foundation - Apache Tomcat におけるサービス運用妨害 (デーモンの停止) の脆弱性 CWE-16
環境設定
CVE-2012-5568 2012-12-4 14:11 2012-11-30 Show GitHub Exploit DB Packet Storm
232313 5 警告 Apache Software Foundation - Apache HTTP Server の mod_proxy_ajp モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-4557 2012-12-4 14:10 2012-01-31 Show GitHub Exploit DB Packet Storm
232314 7.8 危険 IBM - IBM WebSphere DataPower XC10 アプライアンスにおけるサービス運用妨害 (プロセス終了) の脆弱性 CWE-287
不適切な認証
CVE-2012-5758 2012-12-3 18:56 2012-10-29 Show GitHub Exploit DB Packet Storm
232315 5.8 警告 cups-pk-helper - cups-pk-helper における重要なファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4510 2012-12-3 18:54 2012-11-20 Show GitHub Exploit DB Packet Storm
232316 9.3 危険 Novell - Windows 上で稼働する Novell GroupWise のクライアントにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-0418 2012-12-3 18:53 2012-09-11 Show GitHub Exploit DB Packet Storm
232317 4.3 警告 アップル - Apple Safari 6.0 未満で使用される WebKit における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3694 2012-12-3 18:52 2012-07-25 Show GitHub Exploit DB Packet Storm
232318 6.8 警告 PostgreSQL.org - PostgreSQL の pg_dump における CRLF インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0868 2012-12-3 18:51 2012-02-27 Show GitHub Exploit DB Packet Storm
232319 6.8 警告 Lattice Semiconductor - Lattice Diamond Programmer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2614 2012-12-3 18:50 2012-07-12 Show GitHub Exploit DB Packet Storm
232320 4.3 警告 The Document Foundation
OpenOffice.org Project
Redland
- OpenOffice およびその他の製品で使用される Redland Raptor における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-0037 2012-12-3 18:48 2012-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292471 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel before 3.4, a buffer overflow occurs in drivers/net/wireless/iwlwifi/iwl-agn-sta.c, which will cause at least memory corruption. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6712 2024-11-21 10:46 2019-07-28 Show GitHub Exploit DB Packet Storm
292472 7.8 HIGH
Local
gnu
redhat
bash
enterprise_linux
A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in fu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6711 2024-11-21 10:46 2019-06-19 Show GitHub Exploit DB Packet Storm
292473 9.8 CRITICAL
Network
page_flip_book_project page_flip_book Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppageflip) allows remote attackers to include and execute arbitrary local files vi… CWE-22
Path Traversal
CVE-2012-6652 2024-11-21 10:46 2019-05-13 Show GitHub Exploit DB Packet Storm
292474 9.8 CRITICAL
Network
extplorer extplorer ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php. CWE-287
Improper Authentication
CVE-2012-6710 2024-11-21 10:46 2018-10-8 Show GitHub Exploit DB Packet Storm
292475 7.1 HIGH
Local
fedoraproject fedora The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symli… CWE-59
Link Following
CVE-2013-0159 2024-11-21 10:46 2018-05-2 Show GitHub Exploit DB Packet Storm
292476 5.9 MEDIUM
Network
elinks
twibright
elinks
links
ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2012-6709 2024-11-21 10:46 2018-02-24 Show GitHub Exploit DB Packet Storm
292477 6.1 MEDIUM
Network
fortinet fortidb Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before 4.4.2 allow remote attackers to inject arbitrary web script or HTML via the co… CWE-79
Cross-site Scripting
CVE-2012-6347 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292478 6.1 MEDIUM
Network
fortinet fortiweb Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) redir or (2) mkey parameter to waf/pcre_expressi… CWE-79
Cross-site Scripting
CVE-2012-6346 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292479 6.1 MEDIUM
Network
jquery jquery jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differentiate selectors from HTML in a reliable fashion. In vulnerable versions, jQuery… CWE-79
Cross-site Scripting
CVE-2012-6708 2024-11-21 10:46 2018-01-19 Show GitHub Exploit DB Packet Storm
292480 6.1 MEDIUM
Network
dragonbyte-tech vbdownloads_module Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownloads module 1.3.2 and earlier for vBulletin allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-6682 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm