Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241091 7.5 危険 AlexisWilke - Drupal 用 Protected Node モジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2730 2012-06-29 10:52 2012-06-13 Show GitHub Exploit DB Packet Storm
241092 6.8 警告 ADCI LLC - Drupal 用 SimpleMeta モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2729 2012-06-29 10:52 2012-06-13 Show GitHub Exploit DB Packet Storm
241093 6.8 警告 Ronan Dowling - Drupal 用 Node Hierarchy モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2728 2012-06-29 10:51 2012-06-13 Show GitHub Exploit DB Packet Storm
241094 5.8 警告 JanRain - Drupal 用の Janrain Capture モジュールにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-2727 2012-06-29 10:51 2012-06-13 Show GitHub Exploit DB Packet Storm
241095 2.1 注意 Alberto Trujillo Gonzalez - Drupal 用の Protest モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2726 2012-06-29 10:49 2012-06-6 Show GitHub Exploit DB Packet Storm
241096 3.5 注意 Authoring HTML - Drupal 用の Authoring HTML モジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2725 2012-06-29 10:49 2012-06-6 Show GitHub Exploit DB Packet Storm
241097 2.6 注意 Nextide - Drupal 用の Maestro モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2723 2012-06-29 10:48 2012-06-6 Show GitHub Exploit DB Packet Storm
241098 4.3 警告 Scott Reynen - Drupal 用の Node Embed モジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2722 2012-06-29 10:47 2012-06-6 Show GitHub Exploit DB Packet Storm
241099 6.8 警告 Moshe Weitzman - Drupal 用の Organic Groups モジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2721 2012-06-29 10:46 2012-06-6 Show GitHub Exploit DB Packet Storm
241100 5 警告 Adam Ross - Drupal 用の Token Authentication モジュールにおける設定以上の権限を持つリクエストを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2720 2012-06-29 10:43 2012-06-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285971 - cisco secure_access_control_system The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, which allows remote authenticated users to read arbitrary files via a request to th… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0667 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm
285972 - cisco jabber Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windows allows remote attackers to upload arbitrary types of files, and consequently… CWE-22
Path Traversal
CVE-2014-0666 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm
285973 - cisco secure_access_control_system The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute arbitrary operating-system commands via a request to this interface, aka Bug ID… CWE-20
 Improper Input Validation 
CVE-2014-0650 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm
285974 - cisco secure_access_control_system The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization requirements, which allows remote authenticated users to obtain superadmin access … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0649 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm
285975 - cisco secure_access_control_system The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication and authorization requirements, which allows remote attackers to obtain administr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0648 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm
285976 - adobe acrobat Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0495 2024-11-21 11:02 2014-01-16 Show GitHub Exploit DB Packet Storm
285977 - adobe acrobat Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0493 2024-11-21 11:02 2014-01-16 Show GitHub Exploit DB Packet Storm
285978 - adobe flash_player
adobe_air_sdk
adobe_air
Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.202.335 on Linux, Adobe AIR before 4.0.0.1390, Adobe AIR SDK before 4.0.0.1390, a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0492 2024-11-21 11:02 2014-01-16 Show GitHub Exploit DB Packet Storm
285979 - adobe flash_player
adobe_air_sdk
adobe_air
Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.202.335 on Linux, Adobe AIR before 4.0.0.1390, Adobe AIR SDK before 4.0.0.1390, a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0491 2024-11-21 11:02 2014-01-16 Show GitHub Exploit DB Packet Storm
285980 - cisco identity_services_engine_software The RBAC implementation in Cisco Identity Services Engine (ISE) Software does not properly verify privileges for support-bundle downloads, which allows remote authenticated users to obtain sensitive … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0665 2024-11-21 11:02 2014-01-16 Show GitHub Exploit DB Packet Storm