Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240741 7.8 危険 シスコシステムズ - Cisco PGW 2200 Softswitch の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1563 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
240742 7.8 危険 シスコシステムズ - Cisco PGW 2200 Softswitch の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1562 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
240743 7.8 危険 シスコシステムズ - Cisco PGW 2200 Softswitch の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1561 2012-06-26 16:19 2010-05-12 Show GitHub Exploit DB Packet Storm
240744 3.5 注意 Angry Donuts
Drupal
- Drupal の Chaos Tool Suite モジュールの auto-complete 機能における非公開ノードのタイトルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1548 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240745 6.8 警告 Angry Donuts
Drupal
- Drupal の Chaos Tool Suite モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-1547 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240746 6 警告 Angry Donuts
Drupal
- Drupal の Chaos Tool Suite モジュールの import 機能における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1546 2012-06-26 16:19 2010-05-19 Show GitHub Exploit DB Packet Storm
240747 5 警告 ACME Laboratories
rca
- RCA DCM425 ケーブルモデムの micro_httpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1544 2012-06-26 16:19 2010-04-26 Show GitHub Exploit DB Packet Storm
240748 4.3 警告 etracker
Drupal
- Drupal の eTracker モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1543 2012-06-26 16:19 2010-03-3 Show GitHub Exploit DB Packet Storm
240749 6.8 警告 dragonfrugal - DFD Cart の admin/configure.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-1542 2012-06-26 16:19 2010-04-26 Show GitHub Exploit DB Packet Storm
240750 4.3 警告 dragonfrugal - DFD Cart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1541 2012-06-26 16:19 2010-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
286011 - siemens scalance_x-200_series_firmware
scalance_x-200
scalance_x-200irt
The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which a… CWE-287
Improper Authentication
CVE-2013-5944 2024-11-21 10:58 2013-10-3 Show GitHub Exploit DB Packet Storm
286012 - springsignage xibo Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter to index.php. CWE-22
Path Traversal
CVE-2013-5979 2024-11-21 10:58 2013-10-3 Show GitHub Exploit DB Packet Storm
286013 - f5 big-ip_access_policy_manager Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.1.0 through 11.3.0 allows remote attackers to inject arbitrary web… CWE-79
Cross-site Scripting
CVE-2013-5976 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
286014 - f5 big-ip_access_policy_manager The access policy logon page (logon.inc) in F5 BIG-IP APM 11.1.0 through 11.2.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5975 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
286015 - david_king
canonical
vino
ubuntu_linux
The vino_server_client_data_pending function in vino-server.c in GNOME Vino 2.26.1, 2.32.1, 3.7.3, and earlier, and 3.8 when encryption is disabled, does not properly clear client data when an error … CWE-20
 Improper Input Validation 
CVE-2013-5745 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
286016 - metaclassy byword The Metaclassy Byword app 2.x before 2.1 for iOS does not require confirmation of Replace file actions, which allows remote attackers to overwrite arbitrary files via the name and text parameters in … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5725 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286017 - cdsincdesign simple_dropbox_upload_form Unrestricted file upload vulnerability in multi.php in Simple Dropbox Upload plugin before 1.8.8.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executab… NVD-CWE-Other
CVE-2013-5963 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286018 - envato complete_gallery_manager_plugin Unrestricted file upload vulnerability in frames/upload-images.php in the Complete Gallery Manager plugin before 3.3.4 rev40279 for WordPress allows remote attackers to execute arbitrary code by uplo… NVD-CWE-Other
CVE-2013-5962 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286019 - danny_morris lazy_seo Unrestricted file upload vulnerability in lazyseo.php in the Lazy SEO plugin 1.1.9 for WordPress allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a… NVD-CWE-Other
CVE-2013-5961 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286020 - adcisolutions node_view_permissions The Node View Permissions module 7.x-1.x before 7.x-1.2 for Drupal does not properly implement the hook_query_alter function, which might allow remote attackers to obtain sensitive information by rea… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5965 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm