Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240801 4 警告 ヒューレット・パッカード - Mercury SiteScope におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5134 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240802 5 警告 joshua muheim - Joshua Muheim phpMyWebmin の window.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5125 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240803 7.5 危険 joshua muheim - Joshua Muheim phpMyWebmin における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5124 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240804 4.9 警告 ヒューレット・パッカード - Mercury SiteScope におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5122 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240805 5.1 警告 KGB - KGB の kgcall.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5115 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240806 7.5 危険 intervations - InterVations NaviCOPA Web Server におけるバッファオーバーフローの脆弱性 - CVE-2006-5112 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240807 5 警告 Libksba project - SUSE LINUX 上の newpg パッケージの gpgsm におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5111 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240808 6.8 警告 php invoice - PHP Invoice の home.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5110 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240809 7.5 危険 vBulletin Solutions, Inc. - Jelsoft vBulletin の global.php における SQL インジェクションの脆弱性 - CVE-2006-5104 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240810 7.5 危険 Netwin Ltd - WEB//NEWS の parse/parser.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5100 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284911 6.5 MEDIUM
Network
dompdf_project dompdf DOMPDF before 0.6.2 allows Information Disclosure. CWE-200
Information Exposure
CVE-2014-5011 2024-11-21 11:11 2020-01-10 Show GitHub Exploit DB Packet Storm
284912 8.8 HIGH
Network
kemptechnologies loadmaster A Bash script injection vulnerability exists in Kemp Load Master 7.1-16 and earlier due to a failure to sanitize input in the Web User Interface (WUI). CWE-74
Injection
CVE-2014-5287 2024-11-21 11:11 2020-01-9 Show GitHub Exploit DB Packet Storm
284913 5.3 MEDIUM
Network
ntp
f5
ntp
big-ip_local_traffic_manager
big-ip_wan_optimization_manager
big-ip_edge_gateway
big-ip_analytics
big-ip_access_policy_manager
big-ip_global_traffic_manager
big-iq_centralize…
An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a malicious user obtain sensitive information. CWE-200
Information Exposure
CVE-2014-5209 2024-11-21 11:11 2020-01-8 Show GitHub Exploit DB Packet Storm
284914 8.8 HIGH
Network
loadedcommerce loaded7 The bindReplace function in the query factory in includes/classes/database.php in Loaded Commerce 7 does not properly handle : (colon) characters, which allows remote authenticated users to conduct S… CWE-89
SQL Injection
CVE-2014-5140 2024-11-21 11:11 2020-01-4 Show GitHub Exploit DB Packet Storm
284915 9.8 CRITICAL
Network
senkas_kolibri_project senkas_kolibri Buffer overflow in Senkas Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a POST request. CWE-20
 Improper Input Validation 
CVE-2014-5289 2024-11-21 11:11 2019-12-28 Show GitHub Exploit DB Packet Storm
284916 6.1 MEDIUM
Network
zend
debian
zend_framework
debian_linux
ZF2014-03 has a potential cross site scripting vector in multiple view helpers CWE-79
Cross-site Scripting
CVE-2014-4913 2024-11-21 11:11 2019-12-16 Show GitHub Exploit DB Packet Storm
284917 7.0 HIGH
Local
xcfa_project
debian
xcfa
debian_linux
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A different vulnerability than CVE-2014-5254. CWE-362
Race Condition
CVE-2014-5255 2024-11-21 11:11 2019-11-22 Show GitHub Exploit DB Packet Storm
284918 4.7 MEDIUM
Local
xcfa_project xcfa xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. CWE-362
Race Condition
CVE-2014-5254 2024-11-21 11:11 2019-11-22 Show GitHub Exploit DB Packet Storm
284919 5.5 MEDIUM
Local
trusted_boot_project
redhat
fedoraproject
trusted_boot
enterprise_linux
fedora
Trusted Boot (tboot) before 1.8.2 has a 'loader.c' Security Bypass Vulnerability CWE-20
 Improper Input Validation 
CVE-2014-5118 2024-11-21 11:11 2019-11-19 Show GitHub Exploit DB Packet Storm
284920 9.8 CRITICAL
Network
hospira mednet Hospira MedNet software version 5.8 and prior uses vulnerable versions of the JBoss Enterprise Application Platform software that may allow unauthenticated users to execute arbitrary code on the targ… CWE-94
Code Injection
CVE-2014-5401 2024-11-21 11:11 2019-03-27 Show GitHub Exploit DB Packet Storm