Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224991 10 危険 シスコシステムズ - Cisco WAAS Software の Web サービスフレームワークにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3443 2013-08-5 14:19 2013-07-31 Show GitHub Exploit DB Packet Storm
224992 5 警告 シスコシステムズ - Cisco VC220 および VC240 カメラにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-3913 2013-08-5 14:14 2013-07-31 Show GitHub Exploit DB Packet Storm
224993 5 警告 Monkey Project - Monkey HTTP Daemon の mk_request.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3724 2013-08-5 14:12 2013-05-24 Show GitHub Exploit DB Packet Storm
224994 5.8 警告 シーメンス - Siemens WinCC おけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-4912 2013-08-5 14:11 2013-07-31 Show GitHub Exploit DB Packet Storm
224995 6.8 警告 シーメンス - Siemens WinCC におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-4911 2013-08-5 14:10 2013-07-31 Show GitHub Exploit DB Packet Storm
224996 10 危険 シーメンス - Siemens SCALANCE W700 シリーズのファームウェアにおける認証を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-4652 2013-08-5 14:08 2013-07-31 Show GitHub Exploit DB Packet Storm
224997 6.6 警告 シーメンス - Siemens SCALANCE W700 シリーズのファームウェアにおける SSL セッションに対して中間者攻撃を実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4651 2013-08-5 14:07 2013-07-31 Show GitHub Exploit DB Packet Storm
224998 5.5 警告 日立 - JP1/IT Desktop Management - Manager および Hitachi IT Operations Director における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4697 2013-08-2 18:15 2013-07-29 Show GitHub Exploit DB Packet Storm
224999 5.8 警告 シマンテック - Symantec Web Gateway アプライアンスの管理コンソールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4673 2013-08-2 17:58 2013-07-25 Show GitHub Exploit DB Packet Storm
225000 7.2 危険 シマンテック - Symantec Web Gateway アプライアンスの管理コンソールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4672 2013-08-2 17:57 2013-07-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
316051 7.2 HIGH
Network
starkdigital wp_testimonial_widget Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stark Digital WP Testimonial Widget.This issue affects WP Testimonial Widget: from n/a through 3.… CWE-89
SQL Injection
CVE-2024-43966 2024-09-14 01:01 2024-08-27 Show GitHub Exploit DB Packet Storm
316052 5.3 MEDIUM
Adjacent
phoenixcontact charx_sec-3150_firmware
charx_sec-3100_firmware
charx_sec-3050_firmware
charx_sec-3000_firmware
An unauthenticated remote attacker can use this vulnerability to change the device configuration due to a file writeable for short time after system startup. CWE-552
 Files or Directories Accessible to External Parties
CVE-2024-3913 2024-09-14 00:58 2024-08-13 Show GitHub Exploit DB Packet Storm
316053 5.4 MEDIUM
Network
code-projects inventory_management A vulnerability classified as problematic was found in code-projects Inventory Management 1.0. This vulnerability affects unknown code of the file /view/registration.php of the component Registration… CWE-79
Cross-site Scripting
CVE-2024-8605 2024-09-14 00:31 2024-09-10 Show GitHub Exploit DB Packet Storm
316054 4.8 MEDIUM
Network
craftcms craft_cms Craft is a content management system (CMS). Craft CMS 5 stored XSS can be triggered by the breadcrumb list and title fields with user input. CWE-79
Cross-site Scripting
CVE-2024-45406 2024-09-14 00:30 2024-09-10 Show GitHub Exploit DB Packet Storm
316055 7.2 HIGH
Network
mozilo mozilocms An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute arbitrary code via uploading a crafted file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-44871 2024-09-14 00:28 2024-09-11 Show GitHub Exploit DB Packet Storm
316056 6.1 MEDIUM
Network
mozilo mozilocms A reflected cross-site scripting (XSS) vulnerability in moziloCMS v3.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload. CWE-79
Cross-site Scripting
CVE-2024-44872 2024-09-14 00:26 2024-09-11 Show GitHub Exploit DB Packet Storm
316057 7.8 HIGH
Local
microsoft windows_10_1809
windows_server_2019
windows_server_2022
windows_11_21h2
windows_11_22h2
windows_server_2022_23h2
windows_10_1607
windows_server_2016
windows_10_22h2
windows…
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38252 2024-09-14 00:23 2024-09-11 Show GitHub Exploit DB Packet Storm
316058 7.8 HIGH
Local
microsoft windows_11_21h2
windows_11_22h2
windows_server_2022_23h2
windows_11_24h2
windows_11_23h2
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38253 2024-09-14 00:20 2024-09-11 Show GitHub Exploit DB Packet Storm
316059 6.2 MEDIUM
Local
microsoft windows_10_1507
windows_10_1809
windows_server_2019
windows_server_2022
windows_11_21h2
windows_11_22h2
windows_11_23h2
windows_server_2022_23h2
windows_10_1607
windows_ser…
Windows Authentication Information Disclosure Vulnerability NVD-CWE-noinfo
CVE-2024-38254 2024-09-14 00:16 2024-09-11 Show GitHub Exploit DB Packet Storm
316060 6.5 MEDIUM
Network
zoneminder zoneminder ZoneMinder is a free, open source Closed-circuit television software application. In WWW/AJAX/watch.php, Line: 51 takes a few parameter in sql query without sanitizing it which makes it vulnerable to… CWE-89
SQL Injection
CVE-2023-41884 2024-09-14 00:08 2024-08-13 Show GitHub Exploit DB Packet Storm