Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241311 4.3 警告 tForum - tForum の member.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5138 2012-09-5 10:59 2012-08-31 Show GitHub Exploit DB Packet Storm
241312 7.5 危険 tForum - tForum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5137 2012-09-5 10:58 2012-08-31 Show GitHub Exploit DB Packet Storm
241313 9.3 危険 Viscom Software - Viscom Image Viewer CP Pro および Gold におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-5194 2012-09-5 10:57 2012-08-31 Show GitHub Exploit DB Packet Storm
241314 9.3 危険 Viscom Software - Viscom Image Viewer CP Pro および Gold におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-5193 2012-09-5 10:55 2012-08-31 Show GitHub Exploit DB Packet Storm
241315 4.3 警告 バラクーダネットワークス - Barracuda SSL VPN におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4739 2012-09-5 10:06 2012-07-16 Show GitHub Exploit DB Packet Storm
241316 5 警告 GNU Gatekeeper - GNU Gatekeeper におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3534 2012-09-5 10:05 2012-08-31 Show GitHub Exploit DB Packet Storm
241317 5 警告 oVirt - oVirt 用 python SDK および CLI におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2012-3533 2012-09-5 10:03 2012-08-15 Show GitHub Exploit DB Packet Storm
241318 5 警告 John Franklin - Drupal 用 Advertisement モジュールにおけるサイトの重要な設定情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2704 2012-09-5 09:59 2012-05-16 Show GitHub Exploit DB Packet Storm
241319 2.1 注意 rssh - rssh における制限されたシェルアクセスを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3478 2012-09-5 09:57 2012-08-31 Show GitHub Exploit DB Packet Storm
241320 2.1 注意 NAXSI Project - Nginx 用 Naxsi モジュールの naxsi-ui/nx_extract.py におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3380 2012-09-5 09:48 2012-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285371 - zend zendrest
zend_framework
zendservice_slideshare
zendservice_api
zendservice_audioscrobbler
zendservice_amazon
zendservice_technorati
zendservice_windowsazure
zendopenid
zend…
Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before 2.2.6, ZendOpenId, ZendRest, ZendService_AudioScrobbler, ZendService_Nirvanix, ZendService_SlideShare, ZendService… CWE-19
 Data Processing Errors
CVE-2014-2681 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
285372 - accuenergy axm-net
acuvim_ii
The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords and modify settings via vectors involving JavaScript. CWE-200
Information Exposure
CVE-2014-2374 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
285373 - accuenergy axm-net
acuvim_ii
The web server on the AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to bypass authentication and modify settings via a direct request to an unspecified U… CWE-287
Improper Authentication
CVE-2014-2373 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
285374 - t-mobile
asus
tm-ac1900
rt_series_firmware
ASUS RT-AC68U, RT-AC66R, RT-AC66U, RT-AC56R, RT-AC56U, RT-N66R, RT-N66U, RT-N56R, RT-N56U, and possibly other RT-series routers before firmware 3.0.0.4.376.x do not verify the integrity of firmware (… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2014-2718 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
285375 - fortinet fortimanager
fortianalyzer_firmware
Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 and FortiAnalyzer before 5.0.7 allow remote attackers to inject arbitrary web scrip… CWE-79
Cross-site Scripting
CVE-2014-2336 2024-11-21 11:06 2014-10-31 Show GitHub Exploit DB Packet Storm
285376 - fortinet fortianalyzer_firmware Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vecto… CWE-79
Cross-site Scripting
CVE-2014-2335 2024-11-21 11:06 2014-10-31 Show GitHub Exploit DB Packet Storm
285377 - fortinet fortianalyzer_firmware Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiAnalyzer before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vect… CWE-79
Cross-site Scripting
CVE-2014-2334 2024-11-21 11:06 2014-10-31 Show GitHub Exploit DB Packet Storm
285378 - interworx web_control_panel SQL injection vulnerability in xhr.php in InterWorx Web Control Panel (aka InterWorx Hosting Control Panel and InterWorx-CP) before 5.0.14 build 577 allows remote authenticated users to execute arbit… CWE-89
SQL Injection
CVE-2014-2531 2024-11-21 11:06 2014-10-22 Show GitHub Exploit DB Packet Storm
285379 - hp operations_agent Cross-site scripting (XSS) vulnerability in HP Operations Agent in HP Operations Manager (formerly OpenView Communications Broker) before 11.14 allows remote attackers to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2014-2647 2024-11-21 11:06 2014-10-19 Show GitHub Exploit DB Packet Storm
285380 - fox-it fox_datadiode Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative web interface in the proxy server on Fox-IT Fox DataDiode appliances before 1.7.2 allow remote attackers to hijack the… CWE-352
 Origin Validation Error
CVE-2014-2358 2024-11-21 11:06 2014-10-19 Show GitHub Exploit DB Packet Storm