Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225101 4 警告 オラクル - Oracle Database Server の Core RDBMS における SYS テーブルに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0377 2014-01-16 14:35 2014-01-14 Show GitHub Exploit DB Packet Storm
225102 6.2 警告 Fedora Project - Fedora などのオペレーティングシステムで使用される DeviceKit の DeviceKit-disks におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0746 2014-01-16 14:28 2010-04-6 Show GitHub Exploit DB Packet Storm
225103 5.5 警告 オラクル - Oracle Hyperion の Hyperion Essbase Administration Services における Admin Console に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0367 2014-01-16 14:19 2014-01-14 Show GitHub Exploit DB Packet Storm
225104 4 警告 オラクル - Oracle E-Business Suite の Oracle Applications Framework における Attachments に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0366 2014-01-16 14:13 2014-01-14 Show GitHub Exploit DB Packet Storm
225105 2.8 注意 オラクル - Oracle Siebel CRM の Siebel Life Sciences における Clinical Trip Report に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0370 2014-01-16 14:06 2014-01-14 Show GitHub Exploit DB Packet Storm
225106 5 警告 オラクル - Oracle Siebel CRM の Siebel Core - EAI における Java Integration に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0369 2014-01-16 14:05 2014-01-14 Show GitHub Exploit DB Packet Storm
225107 4.3 警告 オラクル - Oracle iLearning における Learner Pages に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0389 2014-01-16 13:49 2014-01-14 Show GitHub Exploit DB Packet Storm
225108 4.3 警告 オラクル - Oracle Sun Solaris における Java Web Console に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0390 2014-01-16 13:36 2014-01-14 Show GitHub Exploit DB Packet Storm
225109 4 警告 オラクル - Oracle MySQL の MySQL Server における InnoDB に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5894 2014-01-16 11:58 2014-01-14 Show GitHub Exploit DB Packet Storm
225110 7.2 危険 マイクロソフト - Microsoft Windows 7 および Windows Server 2008 R2 のカーネルモードドライバの win32k.sys における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0262 2014-01-16 11:50 2014-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201301 7.5 HIGH
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources. CWE-306
Missing Authentication for Critical Function
CVE-2021-20474 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201302 4.3 MEDIUM
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be … CWE-209
Information Exposure Through an Error Message
CVE-2021-20417 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201303 5.3 MEDIUM
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit t… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-20416 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201304 7.5 HIGH
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 4.0.0.4 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 196217. CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2021-20415 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201305 7.5 HIGH
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 195711. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-20379 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201306 8.8 HIGH
Network
ibm guardium_data_encryption IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 1957… CWE-613
 Insufficient Session Expiration
CVE-2021-20378 2024-11-21 14:46 2021-07-8 Show GitHub Exploit DB Packet Storm
201307 6.5 MEDIUM
Network
ibm
netapp
cognos_analytics
oncommand_insight
IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configuration setting. An attacker could potentially bypass business logic to modify the… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-20461 2024-11-21 14:46 2021-06-30 Show GitHub Exploit DB Packet Storm
201308 4.3 MEDIUM
Network
ibm planning_analytics IBM Planning Analytics 2.0 could be vulnerable to cross-site request forgery (CSRF) which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the websit… CWE-352
 Origin Validation Error
CVE-2021-20580 2024-11-21 14:46 2021-06-30 Show GitHub Exploit DB Packet Storm
201309 5.5 MEDIUM
Local
ibm spectrum_protect_plus IBM Spectrum Protect Plus 10.1.0 through 10.1.8 could allow a local user to cause a denial of service due to insecure file permission settings. IBM X-Force ID: 197791. CWE-276
Incorrect Default Permissions 
CVE-2021-20490 2024-11-21 14:46 2021-06-30 Show GitHub Exploit DB Packet Storm
201310 5.4 MEDIUM
Network
ibm planning_analytics IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially… CWE-79
Cross-site Scripting
CVE-2021-20477 2024-11-21 14:46 2021-06-30 Show GitHub Exploit DB Packet Storm