Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225741 4.3 警告 Yandex.Metrics Pproject - Drupal 用 Yandex.Metrics モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0319 2013-04-1 14:36 2013-02-19 Show GitHub Exploit DB Packet Storm
225742 10 危険 Banckle Chat Project - Drupal 用 Banckle Chat モジュールにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0318 2013-04-1 14:17 2013-02-13 Show GitHub Exploit DB Packet Storm
225743 4.3 警告 Joe Haskins - Drupal 用 Manager Change for Organic Groups モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0317 2013-04-1 14:16 2013-02-12 Show GitHub Exploit DB Packet Storm
225744 5 警告 Drupal - Drupal の Image モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-0316 2013-04-1 14:15 2013-02-20 Show GitHub Exploit DB Packet Storm
225745 2.1 注意 Elliot Pahl - Drupal 用 Drush Debian Packaging モジュールにおけるデータベースの認証情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-0260 2013-04-1 14:13 2013-01-30 Show GitHub Exploit DB Packet Storm
225746 2.1 注意 Boxes project - Drupal 用 Boxes モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0259 2013-04-1 14:11 2013-01-23 Show GitHub Exploit DB Packet Storm
225747 6.8 警告 Attiks - Drupal 用 Google Authenticator login モジュールにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-0258 2013-04-1 14:08 2013-01-29 Show GitHub Exploit DB Packet Storm
225748 5 警告 David Alkire - Drupal 用 email2image モジュールにおけるユーザの電子メール情報のイメージ画像を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0257 2013-04-1 14:06 2013-01-30 Show GitHub Exploit DB Packet Storm
225749 5 警告 Bart Feenstra - Drupal 用 Payment モジュールにおける任意の決済情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0182 2013-04-1 14:03 2013-01-9 Show GitHub Exploit DB Packet Storm
225750 2.6 注意 Thomas Seidl - Drupal 用 Search API モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0181 2013-04-1 13:46 2013-01-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
317701 - infopop ultimate_bulletin_board Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field. NVD-CWE-Other
CVE-2000-0141 2024-02-14 10:17 2000-02-11 Show GitHub Exploit DB Packet Storm
317702 - infopop ultimate_bulletin_board Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file. NVD-CWE-Other
CVE-1999-0854 2024-02-14 10:17 1999-11-1 Show GitHub Exploit DB Packet Storm
317703 - ethereal_group ethereal Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file. NVD-CWE-Other
CVE-1999-1227 2024-02-14 10:17 1999-07-30 Show GitHub Exploit DB Packet Storm
317704 - puppets_place nukenabber NukeNabber allows remote attackers to cause a denial of service by connecting to the NukeNabber port (1080) without sending any data, which causes the CPU usage to rise to 100% from the report.exe pr… NVD-CWE-Other
CVE-1999-1284 2024-02-14 10:17 1998-11-5 Show GitHub Exploit DB Packet Storm
317705 - hp mpe_ix
hp-ux
Vulnerability in Predictive on HP-UX 11.0 and earlier, and MPE/iX 5.5 and earlier, allows attackers to compromise data transfer for Predictive messages (using e-mail or modem) between customer and Re… CWE-200
Information Exposure
CVE-1999-1136 2024-02-14 10:17 1998-07-30 Show GitHub Exploit DB Packet Storm
317706 - hp hp-ux Character-Terminal User Environment (CUE) in HP-UX 11.0 and earlier allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the IOERROR.mytty file. NVD-CWE-Other
CVE-1999-1139 2024-02-14 10:17 1997-09-1 Show GitHub Exploit DB Packet Storm
317707 - netscape
microsoft
communicator
internet_explorer
JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability. NVD-CWE-Other
CVE-1999-0031 2024-02-14 10:17 1997-07-8 Show GitHub Exploit DB Packet Storm
317708 - hp hp-ux Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges. NVD-CWE-Other
CVE-1999-1144 2024-02-14 10:17 1997-01-30 Show GitHub Exploit DB Packet Storm
317709 - hp hp-ux movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges. NVD-CWE-Other
CVE-1999-1249 2024-02-14 10:17 1997-01-6 Show GitHub Exploit DB Packet Storm
317710 - hp hp-ux Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing ppl to core dump. NVD-CWE-Other
CVE-1999-1161 2024-02-14 10:17 1996-11-3 Show GitHub Exploit DB Packet Storm