Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240091 10 危険 マカフィー - McAfee ePolicy Orchestrator などにおけるバッファオーバーフローの脆弱性 - CVE-2006-5156 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240092 5 警告 Kerio Technologies - Sunbelt Kerio Personal Firewall の fwdrv.sys ドライバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5153 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240093 6.8 警告 マイクロソフト - Microsoft Internet Explorer 6 におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5152 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240094 6.5 警告 openbiblio - OpenBiblio の reports system における SQL インジェクションの脆弱性 - CVE-2006-5150 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240095 7.5 危険 openbiblio - OpenBiblio におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2006-5149 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240096 7.5 危険 olate - OlateDownload における SQL インジェクションの脆弱性 - CVE-2006-5145 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240097 6.8 警告 olate - OlateDownload の userupload.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5144 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240098 7.5 危険 kevin a. gordon - Kevin A. Gordon Open Geo Targeting における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5141 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240099 7.5 危険 lappy512 - Lappy512 phpkimagehost の display.php における SQL インジェクションの脆弱性 - CVE-2006-5140 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240100 5 警告 mkportal - MkPortal における Web サイトコンテンツを破損される脆弱性 - CVE-2006-5139 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285901 - linux linux_kernel The fst_get_iface function in drivers/net/wan/farsync.c in the Linux kernel before 3.11.7 does not properly initialize a certain data structure, which allows local users to obtain sensitive informati… CWE-399
 Resource Management Errors
CVE-2014-1444 2024-11-21 11:04 2014-01-19 Show GitHub Exploit DB Packet Storm
285902 - linux linux_kernel The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7 and K8 platforms does not clear pending exceptions before proceeding to an EMM… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1438 2024-11-21 11:04 2014-01-19 Show GitHub Exploit DB Packet Storm
285903 - mcafee vulnerability_manager Multiple cross-site request forgery (CSRF) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MVM) 7.5.5 and earlier allow remote attackers to hijack the authentication of use… CWE-352
 Origin Validation Error
CVE-2014-1473 2024-11-21 11:04 2014-01-16 Show GitHub Exploit DB Packet Storm
285904 - mcafee vulnerability_manager Multiple cross-site scripting (XSS) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MVM) 7.5.5 and earlier allow remote attackers to inject arbitrary web script or HTML via… CWE-79
Cross-site Scripting
CVE-2014-1472 2024-11-21 11:04 2014-01-16 Show GitHub Exploit DB Packet Storm
285905 - csp_mysql_user_manager_project csp_mysql_user_manager SQL injection vulnerability in CSP MySQL User Manager 2.3 allows remote attackers to execute arbitrary SQL commands via the login field of the login page. CWE-89
SQL Injection
CVE-2014-1466 2024-11-21 11:04 2014-01-16 Show GitHub Exploit DB Packet Storm
285906 - conceptronic c54apm_firmware
c54apm
The Conceptronic C54APM access point with runtime code 1.26 has a default password of admin for the admin account, which makes it easier for remote attackers to obtain access via an HTTP request, as … CWE-255
Credentials Management
CVE-2014-1408 2024-11-21 11:04 2014-01-11 Show GitHub Exploit DB Packet Storm
285907 - conceptronic c54apm_firmware
c54apm
Multiple cross-site scripting (XSS) vulnerabilities on the Conceptronic C54APM access point with runtime code 1.26 allow remote attackers to inject arbitrary web script or HTML via (1) the submit-url… CWE-79
Cross-site Scripting
CVE-2014-1407 2024-11-21 11:04 2014-01-11 Show GitHub Exploit DB Packet Storm
285908 - conceptronic c54apm_firmware
c54apm
CRLF injection vulnerability in goform/formWlSiteSurvey on the Conceptronic C54APM access point with runtime code 1.26 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP respon… CWE-20
 Improper Input Validation 
CVE-2014-1406 2024-11-21 11:04 2014-01-11 Show GitHub Exploit DB Packet Storm
285909 - conceptronic c54apm_firmware
c54apm
Multiple open redirect vulnerabilities on the Conceptronic C54APM access point with runtime code 1.26 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via … CWE-20
 Improper Input Validation 
CVE-2014-1405 2024-11-21 11:04 2014-01-11 Show GitHub Exploit DB Packet Storm
285910 9.8 CRITICAL
Network
huge-it portfolio_gallery A vulnerability classified as critical has been found in Portfolio Gallery Plugin up to 1.1.8 on WordPress. This affects an unknown part. The manipulation leads to sql injection. It is possible to in… CWE-89
SQL Injection
CVE-2014-125101 2024-11-21 11:03 2023-05-28 Show GitHub Exploit DB Packet Storm