Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228311 2.7 注意 シトリックス・システムズ - Xen の PyGrub ブートローダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2625 2012-12-7 15:30 2012-07-4 Show GitHub Exploit DB Packet Storm
228312 7.2 危険 マイクロソフト - Intel CPU で動作する 64bit OS や仮想化環境に権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2012-0217 2012-12-7 15:29 2012-06-13 Show GitHub Exploit DB Packet Storm
228313 10 危険 ヒューレット・パッカード - HP Network Node Manager i における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-3275 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
228314 10 危険 ヒューレット・パッカード - HP Intelligent Management Center におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3274 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
228315 5 警告 ヒューレット・パッカード - HP LaserJet Pro および LaserJet における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3273 2012-12-7 15:11 2012-12-3 Show GitHub Exploit DB Packet Storm
228316 4.3 警告 ヒューレット・パッカード - HP Color LaserJet および LaserJet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3272 2012-12-7 15:10 2012-12-3 Show GitHub Exploit DB Packet Storm
228317 5 警告 VMware - VMware SpringSource Spring Security における有効なユーザ名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2012-5055 2012-12-7 15:09 2012-10-9 Show GitHub Exploit DB Packet Storm
228318 4.3 警告 VMware - VMware SpringSource Spring Security におけるクロスサイトリクエストフォージェリの脆弱性 CWE-94
コード・インジェクション
CVE-2011-2732 2012-12-7 15:07 2011-09-9 Show GitHub Exploit DB Packet Storm
228319 5.1 警告 VMware - VMware SpringSource Spring Security の RunAsManager メカニズムにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2011-2731 2012-12-7 15:05 2011-09-9 Show GitHub Exploit DB Packet Storm
228320 5.5 警告 OpenStack - 複数の OpenStack 製品の v1 API における保護されていないイメージを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4573 2012-12-7 14:51 2012-11-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211471 - phpmyadmin phpmyadmin The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter. CWE-254
 7PK - Security Features
CVE-2015-7873 2024-11-21 11:37 2015-10-28 Show GitHub Exploit DB Packet Storm
211472 - siemens ruggedcom_rugged_operating_system Siemens RUGGEDCOM ROS before 4.2.1 allows remote attackers to obtain sensitive information by sniffing the network for VLAN data within the padding section of an Ethernet frame. CWE-200
Information Exposure
CVE-2015-7836 2024-11-21 11:37 2015-10-28 Show GitHub Exploit DB Packet Storm
211473 - sap hana The index server (hdbindexserver) in SAP HANA 1.00.095 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an HTTP request, aka SAP Security Note 21… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-7986 2024-11-21 11:37 2015-10-28 Show GitHub Exploit DB Packet Storm
211474 - canonical
gnome
opensuse
ubuntu_linux
gdk-pixbuf
opensuse
Integer overflow in the pixops_scale_nearest function in pixops/pixops.c in gdk-pixbuf before 2.32.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbi… CWE-189
Numeric Errors
CVE-2015-7674 2024-11-21 11:37 2015-10-27 Show GitHub Exploit DB Packet Storm
211475 - opensuse
gnome
opensuse
gdk-pixbuf
io-tga.c in gdk-pixbuf before 2.32.0 uses heap memory after its allocation failed, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) and po… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-7673 2024-11-21 11:37 2015-10-27 Show GitHub Exploit DB Packet Storm
211476 - owncloud owncloud The files_external app in ownCloud Server before 7.0.9, 8.0.x before 8.0.7, and 8.1.x before 8.1.2 allows remote authenticated users to instantiate arbitrary classes and possibly execute arbitrary co… CWE-20
 Improper Input Validation 
CVE-2015-7699 2024-11-21 11:37 2015-10-27 Show GitHub Exploit DB Packet Storm
211477 - colorbox_project colorbox The Colorbox module 7.x-2.x before 7.x-2.10 for Drupal allows remote authenticated users with certain permissions to bypass intended access restrictions and "add unexpected content to a Colorbox" via… CWE-284
Improper Access Control
CVE-2015-7881 2024-11-21 11:37 2015-10-26 Show GitHub Exploit DB Packet Storm
211478 - owncloud smb
owncloud
icewind1991 SMB before 1.0.3 allows remote authenticated users to execute arbitrary SMB commands via shell metacharacters in the user argument in the (1) listShares function in Server.php or the (2) … CWE-78
OS Command 
CVE-2015-7698 2024-11-21 11:37 2015-10-22 Show GitHub Exploit DB Packet Storm
211479 - kentico kentico_cms Open redirect vulnerability in CMSPages/GetDocLink.ashx in Kentico CMS 8.2 through 8.2.41 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in th… NVD-CWE-Other
CVE-2015-7823 2024-11-21 11:37 2015-10-22 Show GitHub Exploit DB Packet Storm
211480 - kentico kentico_cms Multiple cross-site scripting (XSS) vulnerabilities in Kentico CMS 8.2 allow remote attackers to inject arbitrary web script or HTML via a (1) parameter name to CMSModules/AdminControls/Pages/UIPage.… CWE-79
Cross-site Scripting
CVE-2015-7822 2024-11-21 11:37 2015-10-22 Show GitHub Exploit DB Packet Storm