Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 24, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 9.8 緊急
Network
HGiga OAKlouds-organization-2.0
OAKlouds-organization-3.0
OAKlouds-webbase-3.0
OAKlouds-webbase-2.0
複数の HGiga 製品におけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2024-26261 2025-01-24 17:53 2024-02-15 Show GitHub Exploit DB Packet Storm
2 8.8 重要
Network
MHA Sistemas arMHAzena MHA Sistemas の arMHAzena における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2024-2480 2025-01-24 17:48 2024-03-15 Show GitHub Exploit DB Packet Storm
3 6.5 警告
Network
ZyXEL NWA210AX ファームウェア
nwa50ax ファームウェア
WAX650S ファームウェア
NWA110AX ファームウェア
wax640s-6e ファームウェア
WAX510D ファームウェア
wac500h ファームウェア
wax620d-6e ファームウェア
複数の ZyXEL 製品における脆弱性 New CWE-269
CWE-noinfo
CVE-2024-1575 2025-01-24 17:36 2024-07-23 Show GitHub Exploit DB Packet Storm
4 8.8 重要
Network
E-WEBInformationCo. FS-EZViewer(Web) E-WEBInformationCo. の FS-EZViewer(Web) における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2024-1523 2025-01-24 17:32 2024-02-15 Show GitHub Exploit DB Packet Storm
5 7.8 重要
Local
インテル Intel GPA Framework インテルの Intel GPA Framework における脆弱性 New CWE-284
CWE-noinfo
CVE-2023-43748 2025-01-24 17:31 2023-10-12 Show GitHub Exploit DB Packet Storm
6 9.8 緊急
Network
DELL EMC (旧 EMC Corporation) RecoverPoint for Virtual Machines デルの RecoverPoint for Virtual Machines における OS コマンドインジェクションの脆弱性 New CWE-434
CWE-78
CVE-2024-22426 2025-01-24 17:30 2024-02-16 Show GitHub Exploit DB Packet Storm
7 7.8 重要
Local
Ivanti Ivanti Application Control Ivanti の Ivanti Application Control における不適切なデフォルトパーミッションに関する脆弱性 New CWE-276
CWE-276
CVE-2024-11598 2025-01-24 17:18 2024-12-11 Show GitHub Exploit DB Packet Storm
8 8.8 重要
Network
Open-Xchange
Debian
Mozilla Foundation
Debian GNU/Linux
Open-Xchange AppSuite frontend
Mozilla Thunderbird
Mozilla Firefox
Mozilla Foundation の Mozilla Firefox 等複数ベンダの製品における脆弱性 New CWE-noinfo
情報不足
CVE-2024-4367 2025-01-24 17:14 2024-04-29 Show GitHub Exploit DB Packet Storm
9 9.8 緊急
Network
Pos Tahsil Online Payment System Pos Tahsil の Online Payment System における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2023-7081 2025-01-24 17:13 2023-12-22 Show GitHub Exploit DB Packet Storm
10 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2024-57944 2025-01-24 17:03 2024-12-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274811 - squid-cache squid Squid 3.0 through 3.0.STABLE16 and 3.1 through 3.1.0.11 does not properly enforce "buffer limits and related bound checks," which allows remote attackers to cause a denial of service via (1) an incom… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2621 2009-08-12 14:30 2009-07-29 Show GitHub Exploit DB Packet Storm
274812 - squid-cache squid Squid 3.0 through 3.0.STABLE16 and 3.1 through 3.1.0.11 allows remote attackers to cause a denial of service via malformed requests including (1) "missing or mismatched protocol identifier," (2) miss… CWE-20
 Improper Input Validation 
CVE-2009-2622 2009-08-12 14:30 2009-07-29 Show GitHub Exploit DB Packet Storm
274813 - znc znc Directory traversal vulnerability in ZNC before 0.072 allows remote attackers to overwrite arbitrary files via a crafted DCC SEND request. CWE-22
Path Traversal
CVE-2009-2658 2009-08-12 14:30 2009-08-5 Show GitHub Exploit DB Packet Storm
274814 - django_project django The Admin media handler in core/servers/basehttp.py in Django 1.0 and 0.96 does not properly map URL requests to expected "static media files," which allows remote attackers to conduct directory trav… CWE-22
Path Traversal
CVE-2009-2659 2009-08-12 14:30 2009-08-5 Show GitHub Exploit DB Packet Storm
274815 - ibm aix A certain debugging component in IBM AIX 5.3 and 6.1 does not properly handle the (1) _LIB_INIT_DBG and (2) _LIB_INIT_DBG_FILE environment variables, which allows local users to gain privileges by le… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2669 2009-08-12 14:30 2009-08-6 Show GitHub Exploit DB Packet Storm
274816 - adobe acrobat
acrobat_reader
Heap-based buffer overflow in the JBIG2 filter in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 might allow remot… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0888 2009-08-12 14:27 2009-06-12 Show GitHub Exploit DB Packet Storm
274817 - adobe acrobat
acrobat_reader
Heap-based buffer overflow in the JBIG2 filter in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 might allow remot… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0889 2009-08-12 14:27 2009-06-12 Show GitHub Exploit DB Packet Storm
274818 - ibm db2 The db2fmp process in IBM DB2 8 before FP17, 9.1 before FP5, and 9.5 before FP2 on Windows runs with "OS privilege," which has unknown impact and attack vectors, a different vulnerability than CVE-20… CWE-16
Configuration
CVE-2008-6820 2009-08-12 14:25 2009-06-4 Show GitHub Exploit DB Packet Storm
274819 - hp proliant_onboard_administrator
proliant_dl120
proliant_dl160
proliant_dl165
proliant_dl180
proliant_dl185
proliant_ml110
proliant_ml115
proliant_ml150
Unspecified vulnerability on HP ProLiant DL and ML 100 Series G5, G5p, and G6 servers with ProLiant Onboard Administrator Powered by LO100i (formerly Lights Out 100) 3.07 and earlier allows remote at… NVD-CWE-noinfo
CVE-2009-1426 2009-08-11 14:24 2009-07-30 Show GitHub Exploit DB Packet Storm
274820 - sun opensolaris
solaris
XScreenSaver in Sun Solaris 10 and OpenSolaris before snv_109, and Solaris 8 and 9 with GNOME 2.0 or 2.0.2, allows physically proximate attackers to obtain sensitive information by reading popup wind… CWE-200
Information Exposure
CVE-2009-1276 2009-08-11 13:00 2009-04-10 Show GitHub Exploit DB Packet Storm