Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240511 3.5 注意 ThinkLeft - Drupal 用 Submenu Tree モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1651 2012-09-21 14:34 2012-02-29 Show GitHub Exploit DB Packet Storm
240512 6.8 警告 リコー - Ricoh DC Software DL-10 の SR10 FTP サーバーにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5002 2012-09-21 12:16 2012-09-19 Show GitHub Exploit DB Packet Storm
240513 7.5 危険 blueteck - deV!L'z Clanportal 用 Witze アドオンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5000 2012-09-21 12:15 2012-09-19 Show GitHub Exploit DB Packet Storm
240514 6.1 警告 Mercurycom - Mercury MR804 ルータにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-4999 2012-09-21 12:14 2012-09-19 Show GitHub Exploit DB Packet Storm
240515 4.3 警告 starCMS - starCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4998 2012-09-21 11:32 2012-09-19 Show GitHub Exploit DB Packet Storm
240516 7.5 危険 AneCMS - AneCMS の acp/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4997 2012-09-21 11:32 2012-09-19 Show GitHub Exploit DB Packet Storm
240517 4.3 警告 LimeSurvey - LimeSurvey の admin/userrighthandling.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4995 2012-09-21 11:31 2012-09-19 Show GitHub Exploit DB Packet Storm
240518 6.5 警告 LimeSurvey - LimeSurvey の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4994 2012-09-21 11:30 2012-09-19 Show GitHub Exploit DB Packet Storm
240519 7.5 危険 RivetCode Software - RivetTracker における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4996 2012-09-21 11:30 2012-09-19 Show GitHub Exploit DB Packet Storm
240520 7.5 危険 RivetCode Software - RivetTracker の torrent_functions.php における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4993 2012-09-21 11:29 2012-09-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285401 - cisco hosted_collaboration_solution Memory leak in the GUI in the Impact server in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors, aka Bug ID … CWE-20
 Improper Input Validation 
CVE-2014-2122 2024-11-21 11:05 2014-03-19 Show GitHub Exploit DB Packet Storm
285402 - cisco hosted_collaboration_solution The Java-based software in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (closing of TCP ports) via unspecified vectors, aka Bug IDs CSCug77633, CSCug… CWE-20
 Improper Input Validation 
CVE-2014-2121 2024-11-21 11:05 2014-03-19 Show GitHub Exploit DB Packet Storm
285403 - freetype
canonical
freetype
ubuntu_linux
The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to c… CWE-20
 Improper Input Validation 
CVE-2014-2241 2024-11-21 11:05 2014-03-19 Show GitHub Exploit DB Packet Storm
285404 - freedownloadmanager free_download_manager Stack-based buffer overflow in the CDownloads_Deleted::UpdateDownload function in Downloads_Deleted.cpp in Free Download Manager 3.9.3 build 1360, 3.8 build 1173, 3.0 build 852, and earlier allows us… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-2087 2024-11-21 11:05 2014-03-19 Show GitHub Exploit DB Packet Storm
285405 - yumenomachi demaecan The Demaecan application 2.1.0 and earlier for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information … CWE-310
Cryptographic Issues
CVE-2014-1976 2024-11-21 11:05 2014-03-18 Show GitHub Exploit DB Packet Storm
285406 - r-company unzipper Directory traversal vulnerability in the R-Company Unzipper application 1.0.1 and earlier for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename. CWE-22
Path Traversal
CVE-2014-1975 2024-11-21 11:05 2014-03-18 Show GitHub Exploit DB Packet Storm
285407 - siemens simatic_s7-1500_cpu_firmware Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTPS packets. NVD-CWE-Other
CVE-2014-2259 2024-11-21 11:05 2014-03-16 Show GitHub Exploit DB Packet Storm
285408 - siemens simatic_s7-1500_cpu_firmware Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted ISO-TSAP packets. NVD-CWE-Other
CVE-2014-2257 2024-11-21 11:05 2014-03-16 Show GitHub Exploit DB Packet Storm
285409 - siemens simatic_s7-1500_cpu_firmware Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets. NVD-CWE-Other
CVE-2014-2255 2024-11-21 11:05 2014-03-16 Show GitHub Exploit DB Packet Storm
285410 - siemens simatic_s7-1500_cpu_firmware Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted Profinet packets. NVD-CWE-Other
CVE-2014-2253 2024-11-21 11:05 2014-03-16 Show GitHub Exploit DB Packet Storm