Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224601 5.5 警告 IBM - IBM Maximo Asset Management におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4027 2013-10-2 19:34 2013-09-25 Show GitHub Exploit DB Packet Storm
224602 5.5 警告 IBM - IBM Maximo Asset Management における不特定のファイルインクルード攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-4021 2013-10-2 19:28 2013-09-25 Show GitHub Exploit DB Packet Storm
224603 3.5 注意 IBM - IBM Maximo Asset Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4019 2013-10-2 19:12 2013-09-25 Show GitHub Exploit DB Packet Storm
224604 3.5 注意 IBM - IBM Maximo Asset Management における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-4018 2013-10-2 19:04 2013-09-25 Show GitHub Exploit DB Packet Storm
224605 6.5 警告 IBM - IBM Maximo Asset Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4017 2013-10-2 19:00 2013-09-25 Show GitHub Exploit DB Packet Storm
224606 4.3 警告 IBM - IBM Maximo Asset Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4014 2013-10-2 18:57 2013-09-25 Show GitHub Exploit DB Packet Storm
224607 6.5 警告 IBM - IBM Maximo Asset Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3973 2013-10-2 18:50 2013-09-25 Show GitHub Exploit DB Packet Storm
224608 3.5 注意 IBM - IBM Maximo Asset Management における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-3972 2013-10-2 18:46 2013-09-25 Show GitHub Exploit DB Packet Storm
224609 4 警告 IBM - IBM Maximo Asset Management におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3971 2013-10-2 18:44 2013-09-25 Show GitHub Exploit DB Packet Storm
224610 4 警告 IBM - IBM Maximo Asset Management におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-3049 2013-10-2 18:40 2013-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313231 2.4 LOW
Physics
apple ipados
iphone_os
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker with physical access may be able to access contact photos from… NVD-CWE-noinfo
CVE-2024-40851 2024-10-31 00:35 2024-10-29 Show GitHub Exploit DB Packet Storm
313232 - - - An Information Disclosure vulnerability in the Telemetry component in TP-Link Kasa KP125M V1.0.0 and Tapo P125M 1.0.0 Build 220930 Rel.143947 allows attackers to observe device state via observing ne… - CVE-2024-35495 2024-10-31 00:35 2024-10-1 Show GitHub Exploit DB Packet Storm
313233 7.5 HIGH
Network
mozilla firefox An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129, Firefox ESR < 128.3, and T… NVD-CWE-noinfo
CVE-2024-8900 2024-10-31 00:35 2024-09-18 Show GitHub Exploit DB Packet Storm
313234 - - - The stripImages and stripIframes methods didn't properly process inputs, leading to XSS vectors. - CVE-2024-40743 2024-10-31 00:35 2024-08-21 Show GitHub Exploit DB Packet Storm
313235 - - - A stored cross-site scripting (XSS) vulnerability in October CMS Bloghub Plugin v1.3.8 and lower allows attackers to execute arbitrary web scripts or HTML via a crafted payload into the Comments sect… - CVE-2024-25837 2024-10-31 00:35 2024-08-17 Show GitHub Exploit DB Packet Storm
313236 8.8 HIGH
Network
hitachienergy microscada_x_sys600
microscada_pro_sys600
The MicroSCADA Pro/X SYS600 product allows an authenticated user input to control or influence paths or file names that are used in filesystem operations. If exploited the vulnerability allows the at… CWE-22
Path Traversal
CVE-2024-3980 2024-10-31 00:33 2024-08-27 Show GitHub Exploit DB Packet Storm
313237 8.2 HIGH
Local
hitachienergy microscada_x_sys600 An attacker with local access to machine where MicroSCADA X SYS600 is installed, could enable the session logging supporting the product and try to exploit a session hijacking of an already establish… CWE-294
Authentication Bypass by Capture-replay 
CVE-2024-3982 2024-10-31 00:32 2024-08-27 Show GitHub Exploit DB Packet Storm
313238 8.8 HIGH
Network
hitachienergy microscada_x_sys600
microscada_pro_sys600
A vulnerability exists in the query validation of the MicroSCADA Pro/X SYS600 product. If exploited this could allow an authenticated attacker to inject code towards persistent data. Note that to suc… NVD-CWE-Other
CVE-2024-4872 2024-10-31 00:31 2024-08-27 Show GitHub Exploit DB Packet Storm
313239 4.3 MEDIUM
Network
hitachienergy microscada_x_sys600 An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying the URL value to a malicious site, an attacker may successfull… CWE-601
Open Redirect
CVE-2024-7941 2024-10-31 00:29 2024-08-27 Show GitHub Exploit DB Packet Storm
313240 7.2 HIGH
Network
anujkumar medical_card_generation_system A vulnerability was found in PHPGurukul Medical Card Generation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/card-bwdate… CWE-89
SQL Injection
CVE-2024-10296 2024-10-31 00:13 2024-10-24 Show GitHub Exploit DB Packet Storm