Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1011 9.8 緊急
Network
アバイア Avaya IP Office アバイアの Avaya IP Office における脆弱性 CWE-20
CWE-noinfo
CVE-2024-4196 2025-01-22 15:40 2024-06-25 Show GitHub Exploit DB Packet Storm
1012 9.8 緊急
Network
BlackBerry QNX Software Development Platform BlackBerry の QNX Software Development Platform における境界外書き込みに関する脆弱性 CWE-787
CWE-787
CVE-2024-48856 2025-01-22 15:40 2024-10-8 Show GitHub Exploit DB Packet Storm
1013 5.4 警告
Network
Autolab project Autolab Autolab project の Autolab における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2024-52584 2025-01-22 15:40 2024-11-18 Show GitHub Exploit DB Packet Storm
1014 7.8 重要
Local
マイクロソフト Microsoft Office
Microsoft 365 Apps
Microsoft Office Visio のリモートでコードが実行される脆弱性 CWE-122
CWE-843
CWE-noinfo
CVE-2025-21356 2025-01-22 15:37 2025-01-14 Show GitHub Exploit DB Packet Storm
1015 9.8 緊急
Network
マイクロフォーカス株式会社 imanager マイクロフォーカス株式会社の imanager における XML 外部エンティティの脆弱性 CWE-611
CWE-611
CVE-2024-3486 2025-01-22 15:37 2024-05-15 Show GitHub Exploit DB Packet Storm
1016 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の F1202 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-3876 2025-01-22 15:37 2024-04-16 Show GitHub Exploit DB Packet Storm
1017 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC8 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の AC8 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4065 2025-01-22 15:37 2024-04-23 Show GitHub Exploit DB Packet Storm
1018 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. 4g300 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の 4g300 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4169 2025-01-22 15:37 2024-04-25 Show GitHub Exploit DB Packet Storm
1019 8.5 重要
Network
cvat computer vision annotation tool cvat の computer vision annotation tool におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
CWE-918
CVE-2024-37164 2025-01-22 15:37 2024-06-13 Show GitHub Exploit DB Packet Storm
1020 5.4 警告
Network
exclusiveaddons exclusive addons for elementor exclusiveaddons の WordPress 用 exclusive addons for elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2750 2025-01-22 15:31 2024-05-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 2, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277341 - alessandro_rubini
debian
redhat
suse
gpm
debian_linux
linux
suse_linux
gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root. NVD-CWE-Other
CVE-2000-0229 2008-09-11 04:03 2000-03-22 Show GitHub Exploit DB Packet Storm
277342 - halloween
redhat
halloween_linux
linux
Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable. NVD-CWE-Other
CVE-2000-0230 2008-09-11 04:03 2000-03-13 Show GitHub Exploit DB Packet Storm
277343 - halloween
suse
halloween_linux
suse_linux
Linux kreatecd trusts a user-supplied path that is used to find the cdrecord program, allowing local users to gain root privileges. NVD-CWE-Other
CVE-2000-0231 2008-09-11 04:03 2000-03-16 Show GitHub Exploit DB Packet Storm
277344 - suse suse_linux_imap_server SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges. NVD-CWE-Other
CVE-2000-0233 2008-09-11 04:03 2000-03-15 Show GitHub Exploit DB Packet Storm
277345 - netscape enterprise_server Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows t… NVD-CWE-Other
CVE-2000-0237 2008-09-11 04:03 2000-03-11 Show GitHub Exploit DB Packet Storm
277346 - redhat linux The web GUI for the Linux Virtual Server (LVS) software in the Red Hat Linux Piranha package has a backdoor password that allows remote attackers to execute arbitrary commands. NVD-CWE-Other
CVE-2000-0248 2008-09-11 04:03 2000-04-24 Show GitHub Exploit DB Packet Storm
277347 - ibm aix The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program. NVD-CWE-Other
CVE-2000-0249 2008-09-11 04:03 2000-04-26 Show GitHub Exploit DB Packet Storm
277348 - qnx qnx The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords. NVD-CWE-Other
CVE-2000-0250 2008-09-11 04:03 2000-04-14 Show GitHub Exploit DB Packet Storm
277349 - hp hp-ux
vvos
HP-UX 11.04 VirtualVault (VVOS) sends data to unprivileged processes via an interface that has multiple aliased IP addresses. NVD-CWE-Other
CVE-2000-0251 2008-09-11 04:03 2000-04-6 Show GitHub Exploit DB Packet Storm
277350 - nbase-xyplex edgeblaster The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI program. NVD-CWE-Other
CVE-2000-0255 2008-09-11 04:03 2000-04-5 Show GitHub Exploit DB Packet Storm