Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 10, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
91 8.8 重要
Local
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2025
Windows Resilient File System (ReFS) の特権の昇格の脆弱性 New CWE-681
CWE-noinfo
CVE-2024-49093 2025-01-10 14:27 2024-12-10 Show GitHub Exploit DB Packet Storm
92 7.8 重要
Local
クアルコム MDM9206 ファームウェア
MDM9607 ファームウェア
SD 835 ファームウェア
SD 845 ファームウェア
SD 850 ファームウェア
複数のクアルコム製品における認証に関する脆弱性 New CWE-287
CWE-287
CVE-2016-10394 2025-01-10 14:26 2024-11-26 Show GitHub Exploit DB Packet Storm
93 9.8 緊急
Network
クアルコム SD 820 ファームウェア
SD 450 ファームウェア
SD 845 ファームウェア
SD 625 ファームウェア
SD 835 ファームウェア
SD 820A ファームウェア
SD 850 ファームウェア
複数のクアルコム製品における境界外読み取りに関する脆弱性 New CWE-125
CWE-126
CVE-2017-17772 2025-01-10 14:26 2017-12-19 Show GitHub Exploit DB Packet Storm
94 9.8 緊急
Network
クアルコム fastconnect 7800 ファームウェア
IPQ5010 ファームウェア
fastconnect 6900 ファームウェア
ipq5302 ファームウェア
IPQ6000 ファームウェア
immersive home 3210 ファームウェア
immer…
複数のクアルコム製品における脆弱性 New CWE-823
CWE-Other
CVE-2023-43553 2025-01-10 14:26 2023-09-19 Show GitHub Exploit DB Packet Storm
95 7.5 重要
Network
アドバンテック株式会社 iView アドバンテック株式会社の iView における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2023-52335 2025-01-10 14:26 2024-11-22 Show GitHub Exploit DB Packet Storm
96 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microso…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 New CWE-122
CWE-noinfo
CVE-2024-49086 2025-01-10 14:24 2024-12-10 Show GitHub Exploit DB Packet Storm
97 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server&…
ワイヤレス広域ネットワーク サービス (WwanSvc) の特権昇格の脆弱性 New CWE-122
CWE-noinfo
CVE-2024-49081 2025-01-10 14:20 2024-12-10 Show GitHub Exploit DB Packet Storm
98 5.5 警告
Local
マイクロソフト Microsoft SharePoint Server
Microsoft 365 Apps
Microsoft Word
Microsoft SharePoint Enterprise Server
Microsoft Office
Microsoft Office のリモート コードが実行される脆弱性 New CWE-125
CWE-noinfo
CVE-2024-49065 2025-01-10 14:17 2024-12-10 Show GitHub Exploit DB Packet Storm
99 8.4 重要
Local
マイクロソフト Microsoft/Muzic Muzic のリモートでコードが実行される脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2024-49063 2025-01-10 14:11 2024-12-10 Show GitHub Exploit DB Packet Storm
100 5.5 警告
Local
マイクロソフト Microsoft Intune Mobile Application Management Microsoft Intune for Android モバイル アプリケーション管理の改ざんの脆弱性 New CWE-284
CWE-noinfo
CVE-2024-30059 2025-01-10 13:49 2024-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 10, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277261 - freebsd freebsd linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileged process to read restricted memory from that pro… NVD-CWE-Other
CVE-2001-1166 2008-09-6 05:25 2001-08-21 Show GitHub Exploit DB Packet Storm
277262 - bell_communications_research s_key keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker who has gained privileges to a user account to create new one-time passwords for … NVD-CWE-Other
CVE-2001-1169 2008-09-6 05:25 2001-09-2 Show GitHub Exploit DB Packet Storm
277263 - checkpoint firewall-1 Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify t… NVD-CWE-Other
CVE-2001-1171 2008-09-6 05:25 2002-04-1 Show GitHub Exploit DB Packet Storm
277264 - xfree86_project x11r6 xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters. NVD-CWE-Other
CVE-2001-1179 2008-09-6 05:25 2001-07-17 Show GitHub Exploit DB Packet Storm
277265 - denicomp winsock_rshd_nt wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a neg… NVD-CWE-Other
CVE-2001-1184 2008-09-6 05:25 2001-12-8 Show GitHub Exploit DB Packet Storm
277266 - freebsd freebsd Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges. NVD-CWE-Other
CVE-2001-1185 2008-09-6 05:25 2001-12-10 Show GitHub Exploit DB Packet Storm
277267 - brian_dorricott mailto mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fi… NVD-CWE-Other
CVE-2001-1188 2008-09-6 05:25 2001-12-11 Show GitHub Exploit DB Packet Storm
277268 - ibm websphere_application_server IBM Websphere Application Server 3.5.3 and earlier stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script. NVD-CWE-Other
CVE-2001-1189 2008-09-6 05:25 2001-12-13 Show GitHub Exploit DB Packet Storm
277269 - mandrakesoft mandrake_linux The default PAM files included with passwd in Mandrake Linux 8.1 do not support MD5 passwords, which could result in a lower level of password security than intended. NVD-CWE-Other
CVE-2001-1190 2008-09-6 05:25 2001-12-12 Show GitHub Exploit DB Packet Storm
277270 - ibm tivoli_secureway_policy_director WebSeal in IBM Tivoli SecureWay Policy Director 3.8 allows remote attackers to cause a denial of service (crash) via a URL that ends in %2e. NVD-CWE-Other
CVE-2001-1191 2008-09-6 05:25 2001-12-11 Show GitHub Exploit DB Packet Storm