Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1051 9.8 緊急
Network
netentsec application security gateway netentsec の application security gateway における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-2021 2025-01-22 13:39 2024-03-1 Show GitHub Exploit DB Packet Storm
1052 7.5 重要
Network
Plone Foundation Plone Plone Foundation の Plone における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
CWE-276
CVE-2024-22889 2025-01-22 13:39 2024-03-6 Show GitHub Exploit DB Packet Storm
1053 5.3 警告
Network
WonderCMS WonderCMS WonderCMS におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
CWE-918
CVE-2024-27563 2025-01-22 13:39 2024-03-5 Show GitHub Exploit DB Packet Storm
1054 6.5 警告
Adjacent
FRRouting Project FRRouting FRRouting Project の FRRouting における脆弱性 CWE-noinfo
情報不足
CVE-2024-27913 2025-01-22 13:39 2024-02-28 Show GitHub Exploit DB Packet Storm
1055 9.8 緊急
Network
XWiki xwiki XWiki の xwiki におけるコードインジェクションの脆弱性 CWE-94
CWE-95
CVE-2024-31982 2025-01-22 13:39 2024-04-10 Show GitHub Exploit DB Packet Storm
1056 9.8 緊急
Network
マイクロフォーカス株式会社 imanager マイクロフォーカス株式会社の imanager におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CVE-2024-3484 2025-01-22 13:38 2024-05-15 Show GitHub Exploit DB Packet Storm
1057 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21139 2025-01-22 12:25 2025-01-14 Show GitHub Exploit DB Packet Storm
1058 7.8 重要
Local
IBM IBM VIOS
IBM AIX
IBM の IBM VIOS および IBM AIX における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-47115 2025-01-22 12:18 2024-12-5 Show GitHub Exploit DB Packet Storm
1059 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21137 2025-01-22 12:11 2025-01-14 Show GitHub Exploit DB Packet Storm
1060 7.5 重要
Network
株式会社アイ・オー・データ機器 UD-LT2 ファームウェア アイ・オー・データ製ルーターUD-LT2における複数の脆弱性 CWE-78
CWE-Other
CVE-2025-20617
CVE-2025-22450
CVE-2025-23237
2025-01-22 12:08 2025-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 3, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278001 - ig_shop ig_shop Cross-site scripting (XSS) vulnerability in change_pass.php in iG Shop 1.4 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a different vulnerability than CVE-2006… NVD-CWE-Other
CVE-2006-5632 2008-09-6 06:12 2006-11-1 Show GitHub Exploit DB Packet Storm
278002 - ubuntu ubuntu_linux Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (resource consumption) by using the (1) sys_get_robust_list and (2) sys_set_robust_list functions to create pro… NVD-CWE-Other
CVE-2006-5648 2008-09-6 06:12 2006-12-14 Show GitHub Exploit DB Packet Storm
278003 - ubuntu ubuntu_linux Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (kernel panic) via unspe… NVD-CWE-Other
CVE-2006-5649 2008-09-6 06:12 2006-12-14 Show GitHub Exploit DB Packet Storm
278004 - alt-n mdaemon Multiple unspecified vulnerabilities in MDaemon and WorldClient in Alt-N Technologies MDaemon before 9.50 allow attackers to cause a denial of service (memory consumption) via unspecified vectors res… NVD-CWE-Other
CVE-2006-5708 2008-09-6 06:12 2006-11-4 Show GitHub Exploit DB Packet Storm
278005 - alt-n mdaemon This vulnerability is addressed in the following product release: Alt-N Technologies, MDaemon, 9.50 NVD-CWE-Other
CVE-2006-5708 2008-09-6 06:12 2006-11-4 Show GitHub Exploit DB Packet Storm
278006 - punbb punbb Multiple SQL injection vulnerabilities in PunBB before 1.2.14 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors. NVD-CWE-Other
CVE-2006-5738 2008-09-6 06:12 2006-11-7 Show GitHub Exploit DB Packet Storm
278007 - punbb punbb Successful exploitation requires that the attacker is an authenticated Administrator. NVD-CWE-Other
CVE-2006-5738 2008-09-6 06:12 2006-11-7 Show GitHub Exploit DB Packet Storm
278008 - cpanel cpanel Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspecified vectors in (1) mysqladmin and (2) hooksadmin. NVD-CWE-Other
CVE-2006-5014 2008-09-6 06:11 2006-09-27 Show GitHub Exploit DB Packet Storm
278009 - redblog redblog Multiple PHP remote file inclusion vulnerabilities in redgun RedBLoG 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the root parameter in imgen.php, and the root_path param… NVD-CWE-Other
CVE-2006-5021 2008-09-6 06:11 2006-09-28 Show GitHub Exploit DB Packet Storm
278010 - paisterist simple_http_scanner Multiple unspecified vulnerabilities in Paisterist Simple HTTP Scanner (sHTTPScanner) before 0.4 have unknown impact and attack vectors. NVD-CWE-Other
CVE-2006-5024 2008-09-6 06:11 2006-09-28 Show GitHub Exploit DB Packet Storm