Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226871 4.3 警告 レッドハット - JBoss Enterprise Portal Platform の GateIn Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5531 2013-01-22 14:59 2013-01-7 Show GitHub Exploit DB Packet Storm
226872 5 警告 レッドハット
SquirrelMail Project
- Red Hat Enterprise Linux で使用される SquirrelMail におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2124 2013-01-22 14:59 2013-01-8 Show GitHub Exploit DB Packet Storm
226873 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC NetWorker の nsrindexd におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4607 2013-01-22 14:58 2013-01-17 Show GitHub Exploit DB Packet Storm
226874 3.5 注意 IBM - IBM Tivoli Federated Identity Manager におけるパスワードを破られる脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3310 2013-01-22 14:57 2013-01-17 Show GitHub Exploit DB Packet Storm
226875 3.5 注意 Samba Project - Samba における LDAP ディレクトリオブジェクトの変更上の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0172 2013-01-22 14:56 2013-01-17 Show GitHub Exploit DB Packet Storm
226876 4.6 警告 シスコシステムズ - Windows 上の Cisco VPN Client におけるサービス運用妨害 (カーネルフォルト および システムクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2012-5429 2013-01-22 14:41 2013-01-12 Show GitHub Exploit DB Packet Storm
226877 5 警告 SpecView - SpecView の Web サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5972 2013-01-22 14:28 2013-01-11 Show GitHub Exploit DB Packet Storm
226878 4.3 警告 General Electric Company - GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-4689 2013-01-22 14:18 2013-01-8 Show GitHub Exploit DB Packet Storm
226879 6.8 警告 シスコシステムズ - Cisco WebEx Training Center におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-1109 2013-01-22 14:08 2013-01-14 Show GitHub Exploit DB Packet Storm
226880 4.3 警告 シスコシステムズ - Cisco WebEx Social におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6397 2013-01-22 14:02 2013-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224791 5.4 MEDIUM
Network
solarwinds web_help_desk SolarWinds Web Help Desk 12.7.0 allows HTML injection via a Comment in a Help Request ticket. CWE-79
Cross-site Scripting
CVE-2019-16954 2024-11-21 13:31 2021-01-7 Show GitHub Exploit DB Packet Storm
224792 5.4 MEDIUM
Network
solarwinds web_help_desk SolarWinds Web Help Desk 12.7.0 allows XSS via a CSV template file with a crafted Location Name field. CWE-79
Cross-site Scripting
CVE-2019-16960 2024-11-21 13:31 2021-01-4 Show GitHub Exploit DB Packet Storm
224793 5.4 MEDIUM
Network
solarwinds web_help_desk SolarWinds Web Help Desk 12.7.0 allows XSS via the Request Type parameter of a ticket. CWE-79
Cross-site Scripting
CVE-2019-16956 2024-11-21 13:31 2021-01-4 Show GitHub Exploit DB Packet Storm
224794 7.5 HIGH
Network
matrixssl matrixssl In MatrixSSL before 4.2.2 Open, the DTLS server can encounter an invalid pointer free (leading to memory corruption and a daemon crash) via a crafted incoming network message, a different vulnerabili… CWE-787
 Out-of-bounds Write
CVE-2019-16747 2024-11-21 13:31 2020-12-31 Show GitHub Exploit DB Packet Storm
224795 6.5 MEDIUM
Network
solarwinds webhelpdesk SolarWinds Web Help Desk 12.7.0 allows CSV Injection, also known as Formula Injection, via a file attached to a ticket. CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2019-16959 2024-11-21 13:31 2020-12-22 Show GitHub Exploit DB Packet Storm
224796 5.4 MEDIUM
Network
solarwinds webhelpdesk SolarWinds Web Help Desk 12.7.0 allows XSS via the First Name field of a User Account. CWE-79
Cross-site Scripting
CVE-2019-16957 2024-11-21 13:31 2020-12-18 Show GitHub Exploit DB Packet Storm
224797 5.4 MEDIUM
Network
solarwinds webhelpdesk SolarWinds Web Help Desk 12.7.0 allows XSS via an uploaded SVG document in a request. CWE-79
Cross-site Scripting
CVE-2019-16955 2024-11-21 13:31 2020-12-18 Show GitHub Exploit DB Packet Storm
224798 5.4 MEDIUM
Network
solarwinds help_desk Cross-site Scripting (XSS) vulnerability in SolarWinds Web Help Desk 12.7.0 allows attacker to inject arbitrary web script or HTML via Location Name. CWE-79
Cross-site Scripting
CVE-2019-16958 2024-11-21 13:31 2020-12-2 Show GitHub Exploit DB Packet Storm
224799 7.5 HIGH
Network
mozilla
siemens
network_security_services
ruggedcom_rox_mx5000_firmware
ruggedcom_rox_rx1400_firmware
ruggedcom_rox_rx1500_firmware
ruggedcom_rox_rx1501_firmware
ruggedcom_rox_rx1510_firmware
rugge…
In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in a denial of service. CWE-295
Improper Certificate Validation 
CVE-2019-17007 2024-11-21 13:31 2020-10-23 Show GitHub Exploit DB Packet Storm
224800 9.8 CRITICAL
Network
siemens
mozilla
netapp
ruggedcom_rox_mx5000_firmware
ruggedcom_rox_rx1400_firmware
ruggedcom_rox_rx1500_firmware
ruggedcom_rox_rx1501_firmware
ruggedcom_rox_rx1510_firmware
ruggedcom_rox_rx1511_firmware
r…
In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the in… CWE-119
CWE-20
Incorrect Access of Indexable Resource ('Range Error') 
 Improper Input Validation 
CVE-2019-17006 2024-11-21 13:31 2020-10-23 Show GitHub Exploit DB Packet Storm