Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232381 7.5 危険 Joomla-CBE - Joomla! 用 CBE コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-5280 2012-11-28 14:26 2012-11-26 Show GitHub Exploit DB Packet Storm
232382 4.3 警告 Matthew James - M-Player におけるサービス運用妨害 (クラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-6044 2012-11-28 14:23 2012-11-26 Show GitHub Exploit DB Packet Storm
232383 4.3 警告 PHP-Fusion - PHP-Fusion の downloads.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6043 2012-11-28 14:21 2012-11-26 Show GitHub Exploit DB Packet Storm
232384 4.3 警告 GEOPAINTING - GPSMapEdit におけるサービス運用妨害 (クラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2012-6042 2012-11-28 14:20 2012-11-26 Show GitHub Exploit DB Packet Storm
232385 6.8 警告 More Quick Tools - GreenBrowser におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-6041 2012-11-28 14:19 2012-11-26 Show GitHub Exploit DB Packet Storm
232386 4.3 警告 Convergine - File King Advanced File Managemen におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6040 2012-11-28 11:47 2012-11-26 Show GitHub Exploit DB Packet Storm
232387 7.5 危険 YABSoft - YABSoft Advanced Image Hosting Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-6039 2012-11-28 11:46 2012-11-26 Show GitHub Exploit DB Packet Storm
232388 6.5 警告 razorCMS - razorCMS の admin/core/admin_func.php におけるファイルを閲覧される脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6038 2012-11-28 11:45 2012-11-26 Show GitHub Exploit DB Packet Storm
232389 4.3 警告 レッドハット - JBoss Enterprise Data Services Platform におけるログイン認証情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-3431 2012-11-27 20:19 2012-09-20 Show GitHub Exploit DB Packet Storm
232390 3.3 注意 レッドハット - 複数の JBoss Enterprise 製品の JGroups 診断サービスにおける診断情報を読まれる脆弱性 CWE-287
不適切な認証
CVE-2012-2377 2012-11-27 20:16 2012-06-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292651 - chatelao php_address_book Multiple SQL injection vulnerabilities in PHP Address Book 8.2.5 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) addressbook/register/delete_user.php, (2) address… CWE-89
SQL Injection
CVE-2013-0135 2024-11-21 10:46 2013-04-9 Show GitHub Exploit DB Packet Storm
292652 - nvidia display_driver The NVIDIA driver before 307.78, and Release 310 before 311.00, in the NVIDIA Display Driver service on Windows does not properly handle exceptions, which allows local users to gain privileges or cau… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0109 2024-11-21 10:46 2013-04-9 Show GitHub Exploit DB Packet Storm
292653 - tigertext tigertext The Contact Customer Support feature in the TigerText Free Private Texting app before 3.1.402 for iOS sends a log-file e-mail message with unencrypted credentials, which allows remote attackers to ob… CWE-255
Credentials Management
CVE-2013-0128 2024-11-21 10:46 2013-04-5 Show GitHub Exploit DB Packet Storm
292654 - c2enterprise c2_webresource Cross-site scripting (XSS) vulnerability in fileview.asp in C2 WebResource allows remote attackers to inject arbitrary web script or HTML via the File parameter. CWE-79
Cross-site Scripting
CVE-2013-0125 2024-11-21 10:46 2013-04-5 Show GitHub Exploit DB Packet Storm
292655 - zeroclipboard_project zeroclipboard Cross-site scripting (XSS) vulnerability in ZeroClipboard before 1.1.4 allows remote attackers to inject arbitrary web script or HTML via "the clipText returned from the flash object," a different vu… CWE-79
Cross-site Scripting
CVE-2012-6550 2024-11-21 10:46 2013-04-2 Show GitHub Exploit DB Packet Storm
292656 - coreftp coreftp Multiple buffer overflows in Core FTP before 2.2 build 1769 allow remote FTP servers to execute arbitrary code or cause a denial of service (application crash) via a long directory name in a (1) DELE… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0130 2024-11-21 10:46 2013-03-30 Show GitHub Exploit DB Packet Storm
292657 - novell sentinel_log_manager Novell Sentinel Log Manager before 1.2.0.3 allows remote attackers to create data retention policies via a crafted text/x-gwt-rpc request to novelllogmanager/datastorageservice.rpc, and allows remote… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-6534 2024-11-21 10:46 2013-03-30 Show GitHub Exploit DB Packet Storm
292658 - askia askiaweb Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in ASKIA askiaweb allow remote attackers to inject arbitrary web script or HTML via the (1) Number or (2) UpdatePag… CWE-79
Cross-site Scripting
CVE-2013-0124 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm
292659 - askia askiaweb Multiple SQL injection vulnerabilities in the administration interface in ASKIA askiaweb allow remote attackers to execute arbitrary SQL commands via (1) the nHistoryId parameter to WebProd/pages/pgH… CWE-89
SQL Injection
CVE-2013-0123 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm
292660 - verizon fios_actiontec_mi424wr-gen31_router_firmware
fios_actiontec_mi424wr-gen31_router
Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I router with firmware 40.19.36 allow remote attackers to hijack the authentication o… CWE-352
 Origin Validation Error
CVE-2013-0126 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm