Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251761 4.3 警告 SmartyCMS - SmartyCMS の template モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1066 2012-02-17 11:16 2012-02-14 Show GitHub Exploit DB Packet Storm
251762 4.3 警告 2X Software - 2X ApplicationServer の TuxScripting.dll における任意のファイルを作成される脆弱性 CWE-Other
その他
CVE-2012-1065 2012-02-17 11:00 2012-02-14 Show GitHub Exploit DB Packet Storm
251763 9.3 危険 マイクロソフト
AB Team
- Microsoft Windows XP で利用される Indeo コーデックにおける権限昇格の脆弱性 CWE-Other
その他
CVE-2010-3138 2012-02-16 16:14 2010-08-27 Show GitHub Exploit DB Packet Storm
251764 4.4 警告 マイクロソフト - Microsoft Windows Server 2008 の colorcpl.exe における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-5082 2012-02-16 16:04 2012-01-17 Show GitHub Exploit DB Packet Storm
251765 9.3 危険 アップル
マイクロソフト
- Microsoft Windows 7 Professional 64-bit におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-5046 2012-02-16 11:40 2011-12-30 Show GitHub Exploit DB Packet Storm
251766 4.3 警告 アドビシステムズ - Adobe RoboHelp for Word におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0765 2012-02-16 11:27 2012-02-14 Show GitHub Exploit DB Packet Storm
251767 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0766 2012-02-16 11:23 2012-02-14 Show GitHub Exploit DB Packet Storm
251768 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0764 2012-02-16 11:23 2012-02-14 Show GitHub Exploit DB Packet Storm
251769 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0763 2012-02-16 11:21 2012-02-14 Show GitHub Exploit DB Packet Storm
251770 10 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset コンポーネントにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-0762 2012-02-16 11:13 2012-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247171 6.1 MEDIUM
Network
cybozu mailwise Stored cross-site scripting vulnerability in Cybozu Mailwise 5.0.0 to 5.4.1 allows remote attackers to inject arbitrary web script or HTML 'E-mail Details Screen' via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2018-0557 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247172 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allows remote attackers to cause a denial of service via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2018-0529 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247173 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allows authenticated attackers to bypass authentication to view the schedules that are not permitted to access via unspecified vectors. CWE-287
CWE-200
Improper Authentication
Information Exposure
CVE-2018-0528 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247174 6.1 MEDIUM
Network
cybozu office Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2018-0527 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247175 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allow remote attackers to display an image located in an external server via unspecified vectors. CWE-200
Information Exposure
CVE-2018-0526 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247176 9.8 CRITICAL
Network
qnap qts Command injection vulnerability in LDAP Server in QNAP QTS 4.2.6 build 20171208, QTS 4.3.3 build 20180402, QTS 4.3.4 build 20180413 and their earlier versions could allow remote attackers to run arbi… CWE-77
Command Injection
CVE-2018-0712 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247177 5.5 MEDIUM
Local
cisco anyconnect_secure_mobility_client A vulnerability in vpnva-6.sys for 32-bit Windows and vpnva64-6.sys for 64-bit Windows of Cisco AnyConnect Secure Mobility Client for Windows Desktop could allow an authenticated, local attacker to c… CWE-20
 Improper Input Validation 
CVE-2018-0373 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247178 6.5 MEDIUM
Network
cisco meeting_server A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient… CWE-20
 Improper Input Validation 
CVE-2018-0371 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247179 8.8 HIGH
Network
cisco firepower_management_center
firepower_appliance_8360_firmware
firepower_management_center_2500_firmware
firepower_appliance_8120_firmware
firepower_appliance_8260_firmware
firepower_ap…
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and pe… CWE-352
 Origin Validation Error
CVE-2018-0365 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247180 8.8 HIGH
Network
cisco unified_communications_domain_manager A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) att… CWE-352
 Origin Validation Error
CVE-2018-0364 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm