Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229491 7.1 危険 Linux - Linux Kernel の fs/ext4/super.c におけるファイルシステムグループデータの不整合を誘発される脆弱性 CWE-189
数値処理の問題
CVE-2012-2100 2012-12-25 17:44 2012-07-3 Show GitHub Exploit DB Packet Storm
229492 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-4782 2012-12-25 17:11 2012-12-11 Show GitHub Exploit DB Packet Storm
229493 9.3 危険 マイクロソフト - Microsoft Windows における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-4774 2012-12-25 17:08 2012-12-11 Show GitHub Exploit DB Packet Storm
229494 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-2556 2012-12-25 17:05 2012-12-11 Show GitHub Exploit DB Packet Storm
229495 10 危険 Wansview
ShenZhen Foscam Intelligent Technology
- 複数のネットワークカメラに認証回避の脆弱性 CWE-287
不適切な認証
CVE-2012-3002 2012-12-25 16:44 2012-10-11 Show GitHub Exploit DB Packet Storm
229496 10 危険 Carlo Gavazzi - Carlo Gavazzi EOS-Box のファームウェアにおける管理アクセス権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-6428 2012-12-25 16:37 2012-12-19 Show GitHub Exploit DB Packet Storm
229497 7.5 危険 Carlo Gavazzi - Carlo Gavazzi EOS-Box のファームウェアにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-6427 2012-12-25 16:33 2012-12-19 Show GitHub Exploit DB Packet Storm
229498 4.3 警告 シーメンス - 複数の Siemens 製品におけるサーバを偽装される脆弱性 CWE-200
情報漏えい
CVE-2012-4698 2012-12-25 16:32 2012-12-12 Show GitHub Exploit DB Packet Storm
229499 4.3 警告 VMware - VMware vCenter Server Appliance における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-6325 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
229500 4 警告 VMware - VMware vCenter Server Appliance におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6324 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310981 - drupal drupal The comment module in Drupal 5.x before 5.23 and 6.x before 6.18 allows remote authenticated users with certain privileges to bypass intended access restrictions and reinstate removed comments via a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3093 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310982 - drupal drupal The upload module in Drupal 5.x before 5.23 and 6.x before 6.18 does not properly support case-insensitive filename handling in a database configuration, which allows remote authenticated users to by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3092 2024-11-21 10:18 2010-09-22 Show GitHub Exploit DB Packet Storm
310983 - otrs otrs Open Ticket Request System (OTRS) 2.3.x before 2.3.6 and 2.4.x before 2.4.8 does not properly handle the matching of Perl regular expressions against HTML e-mail messages, which allows remote attacke… CWE-20
 Improper Input Validation 
CVE-2010-3476 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310984 - ibm db2 IBM DB2 9.7 before FP3 does not properly enforce privilege requirements for execution of entries in the dynamic SQL cache, which allows remote authenticated users to bypass intended access restrictio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3475 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310985 - ibm db2 IBM DB2 9.7 before FP3 does not perform the expected drops or invalidations of dependent functions upon a loss of privileges by the functions' owners, which allows remote authenticated users to bypas… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-3474 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310986 - ibm filenet_p8_application_engine Open redirect vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allows remote attackers to redirect users to arbitrary web sites and… CWE-20
 Improper Input Validation 
CVE-2010-3473 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310987 - ibm filenet_p8_application_engine Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 allow remote attackers to inject arbitrary w… CWE-79
Cross-site Scripting
CVE-2010-3472 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310988 - ibm filenet_p8_application_engine Session fixation vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.7-P8AE-FP007 allows remote attackers to hijack web sessions via uns… CWE-287
Improper Authentication
CVE-2010-3471 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310989 - ibm filenet_p8_application_engine Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-021 and 4.0.2.x before 4.0.2.7-P8AE-FP007 allow … CWE-79
Cross-site Scripting
CVE-2010-3470 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm
310990 - flock flock Cross-site scripting (XSS) vulnerability in Flock Browser 3.x before 3.0.0.4114 allows remote attackers to inject arbitrary web script or HTML via a crafted RSS feed. CWE-79
Cross-site Scripting
CVE-2010-3262 2024-11-21 10:18 2010-09-21 Show GitHub Exploit DB Packet Storm