Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240181 6.8 警告 matt smith - Remository コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4130 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240182 7.5 危険 Joomla! - Joomla! 用の Webring Component における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4129 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240183 4.6 警告 lesstif - LessTif の libXm ライブラリにおける権限を取得される脆弱性 - CVE-2006-4124 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240184 5.1 警告 ちとらソフト - Lhaz におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-4116 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240185 5.1 警告 hitweb - Brian Fraval hitweb の genpage-cgi.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4113 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240186 4.3 警告 mojoscripts - mojoscripts.com mojoGallery の admin.cgi におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4104 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240187 7.5 危険 jason alexander - Jason Alexander phNNTP の article-raw.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4103 2012-09-25 15:35 2006-08-14 Show GitHub Exploit DB Packet Storm
240188 4.3 警告 mojoscripts - mojoscripts.com mojoGallery の admin.cgi におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4087 2012-09-25 15:35 2006-08-11 Show GitHub Exploit DB Packet Storm
240189 4.3 警告 ozjournals - Elaine Aquino OZJournals の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4086 2012-09-25 15:35 2006-08-11 Show GitHub Exploit DB Packet Storm
240190 7.5 危険 olaf noehring - Olaf Noehring TSEP における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4085 2012-09-25 15:35 2006-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
286571 - x
canonical
libxfont
ubuntu_linux
Multiple integer overflows in the (1) FontFileAddEntry and (2) lexAlias functions in X.Org libXfont before 1.4.8 and 1.4.9x before 1.4.99.901 might allow local users to gain privileges by adding a di… CWE-189
Numeric Errors
CVE-2014-0209 2024-11-21 11:01 2014-05-15 Show GitHub Exploit DB Packet Storm
286572 - redhat cloudforms_3.0_management_engine SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to execute arbitr… CWE-89
SQL Injection
CVE-2014-0137 2024-11-21 11:01 2014-05-15 Show GitHub Exploit DB Packet Storm
286573 - redhat cloudforms_3.0_management_engine The CatalogController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to delete arbitrary catalogs via vectors involving guessing the catalog ID. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0078 2024-11-21 11:01 2014-05-15 Show GitHub Exploit DB Packet Storm
286574 - microsoft internet_explorer Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corru… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0310 2024-11-21 11:01 2014-05-14 Show GitHub Exploit DB Packet Storm
286575 - microsoft windows_server_2008
windows_server_2012
Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 Gold allow remote attackers to cause a denial of service (iSCSI service outage) by sending many crafted packets, aka "iSCSI Target Remote … CWE-20
 Improper Input Validation 
CVE-2014-0256 2024-11-21 11:01 2014-05-14 Show GitHub Exploit DB Packet Storm
286576 - microsoft windows_server_2008
windows_server_2012
Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 Gold and R2 allow remote attackers to cause a denial of service (iSCSI service outage) by sending many crafted packets, aka "iSCSI Target … CWE-20
 Improper Input Validation 
CVE-2014-0255 2024-11-21 11:01 2014-05-14 Show GitHub Exploit DB Packet Storm
286577 - microsoft project_server
sharepoint_foundation
web_applications
sharepoint_server
sharepoint_designer
office_web_apps_server
sharepoint_services
sharepoint_server_client_components_sdk
Microsoft Windows SharePoint Services 3.0 SP3; SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 Gold and SP1; SharePoint Foundation 2010 SP1 and SP2 and 2013 Gold and SP1; Project Server 2010 S… CWE-94
Code Injection
CVE-2014-0251 2024-11-21 11:01 2014-05-14 Show GitHub Exploit DB Packet Storm
286578 - theforeman foreman Foreman 1.4.0 before 1.5.0 does not properly restrict access to provisioning template previews, which allows remote attackers to obtain sensitive information via the hostname parameter, related to "s… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0192 2024-11-21 11:01 2014-05-8 Show GitHub Exploit DB Packet Storm
286579 - qt
fedoraproject
opensuse
canonical
qt
fedora
opensuse
ubuntu_linux
The GIF decoder in QtGui in Qt before 5.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via invalid width and height values in a GIF image. CWE-476
 NULL Pointer Dereference
CVE-2014-0190 2024-11-21 11:01 2014-05-8 Show GitHub Exploit DB Packet Storm
286580 - theforeman kafo Kafo before 0.3.17 and 0.4.x before 0.5.2, as used by Foreman, uses world-readable permissions for default_values.yaml, which allows local users to obtain passwords and other sensitive information by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0135 2024-11-21 11:01 2014-05-8 Show GitHub Exploit DB Packet Storm