Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241241 7.5 危険 phpList - phpList の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3953 2012-08-14 14:41 2012-08-6 Show GitHub Exploit DB Packet Storm
241242 2.6 注意 phpList - phpList の admin/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3952 2012-08-14 14:33 2012-08-6 Show GitHub Exploit DB Packet Storm
241243 2.1 注意 PNP4Nagios - PNP4Nagios における Gearman 共有秘密鍵を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3457 2012-08-14 14:32 2012-08-12 Show GitHub Exploit DB Packet Storm
241244 5 警告 RSGallery2 Team - Joomla! 用 RSGallery2 コンポーネントにおける画像のファイル名を一覧表示される脆弱性 CWE-200
情報漏えい
CVE-2012-4235 2012-08-13 12:27 2012-08-10 Show GitHub Exploit DB Packet Storm
241245 4.3 警告 RSGallery2 Team - Joomla! 用 RSGallery2 コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4071 2012-08-13 12:23 2012-08-10 Show GitHub Exploit DB Packet Storm
241246 7.5 危険 RSGallery2 Team - Joomla! 用 RSGallery2 コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3554 2012-08-13 12:21 2012-08-10 Show GitHub Exploit DB Packet Storm
241247 10 危険 Mozilla Foundation - 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-3659 2012-08-10 14:32 2012-01-31 Show GitHub Exploit DB Packet Storm
241248 3.5 注意 日立 - 日立の JP1/Integrated Management - Service Support におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2012-08-10 14:02 2012-08-8 Show GitHub Exploit DB Packet Storm
241249 4 警告 Linux - x86 プラットフォーム上の Linux Kernel におけるサービス運用妨害 (パニック) の脆弱性 CWE-362
競合状態
CVE-2012-2373 2012-08-10 11:43 2012-08-9 Show GitHub Exploit DB Packet Storm
241250 7.5 危険 Google - Google Chrome の PDF 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-2863 2012-08-10 11:35 2012-08-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285871 - apple tvos
iphone_os
Video Driver in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to cause a denial of service (NULL pointer dereference and device hang) via a crafted video file with MPEG-4 encod… NVD-CWE-Other
CVE-2014-1280 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285872 - apple tvos Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive information by reading log data. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1279 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285873 - apple iphone_os
tvos
The ptmx_get_ioctl function in the ARM kernel in Apple iOS before 7.1 and Apple TV before 6.1 allows local users to gain privileges or cause a denial of service (out-of-bounds memory access and devic… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1278 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285874 - apple iphone_os IOKit HID Event in Apple iOS before 7.1 allows attackers to conduct user-action monitoring attacks against arbitrary apps via a crafted app that accesses an IOKit framework interface. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1276 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285875 - apple iphone_os
tvos
Buffer overflow in ImageIO in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1275 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285876 - apple iphone_os FaceTime in Apple iOS before 7.1 allows physically proximate attackers to obtain sensitive FaceTime contact information by using the lock screen for an invalid FaceTime call. CWE-200
Information Exposure
CVE-2014-1274 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285877 - apple tvos
iphone_os
dyld in Apple iOS before 7.1 and Apple TV before 6.1 allows attackers to bypass code-signing requirements by leveraging use of text-relocation instructions in a dynamic library. CWE-20
 Improper Input Validation 
CVE-2014-1273 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285878 - apple tvos
iphone_os
CrashHouseKeeping in Crash Reporting in Apple iOS before 7.1 and Apple TV before 6.1 allows local users to change arbitrary file permissions by leveraging a symlink. CWE-59
Link Following
CVE-2014-1272 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285879 - apple iphone_os
tvos
CoreCapture in Apple iOS before 7.1 and Apple TV before 6.1 does not properly validate IOKit API calls, which allows attackers to cause a denial of service (assertion failure and device crash) via a … CWE-20
 Improper Input Validation 
CVE-2014-1271 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm
285880 - apple tvos
iphone_os
The Configuration Profiles component in Apple iOS before 7.1 and Apple TV before 6.1 does not properly evaluate the expiration date of a mobile configuration profile, which allows attackers to bypass… CWE-20
 Improper Input Validation 
CVE-2014-1267 2024-11-21 11:03 2014-03-14 Show GitHub Exploit DB Packet Storm