Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1061 9.8 緊急
Network
netentsec application security gateway netentsec の application security gateway における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-2021 2025-01-22 13:39 2024-03-1 Show GitHub Exploit DB Packet Storm
1062 7.5 重要
Network
Plone Foundation Plone Plone Foundation の Plone における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
CWE-276
CVE-2024-22889 2025-01-22 13:39 2024-03-6 Show GitHub Exploit DB Packet Storm
1063 5.3 警告
Network
WonderCMS WonderCMS WonderCMS におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
CWE-918
CVE-2024-27563 2025-01-22 13:39 2024-03-5 Show GitHub Exploit DB Packet Storm
1064 6.5 警告
Adjacent
FRRouting Project FRRouting FRRouting Project の FRRouting における脆弱性 CWE-noinfo
情報不足
CVE-2024-27913 2025-01-22 13:39 2024-02-28 Show GitHub Exploit DB Packet Storm
1065 9.8 緊急
Network
XWiki xwiki XWiki の xwiki におけるコードインジェクションの脆弱性 CWE-94
CWE-95
CVE-2024-31982 2025-01-22 13:39 2024-04-10 Show GitHub Exploit DB Packet Storm
1066 9.8 緊急
Network
マイクロフォーカス株式会社 imanager マイクロフォーカス株式会社の imanager におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CVE-2024-3484 2025-01-22 13:38 2024-05-15 Show GitHub Exploit DB Packet Storm
1067 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21139 2025-01-22 12:25 2025-01-14 Show GitHub Exploit DB Packet Storm
1068 7.8 重要
Local
IBM IBM VIOS
IBM AIX
IBM の IBM VIOS および IBM AIX における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-47115 2025-01-22 12:18 2024-12-5 Show GitHub Exploit DB Packet Storm
1069 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21137 2025-01-22 12:11 2025-01-14 Show GitHub Exploit DB Packet Storm
1070 7.5 重要
Network
株式会社アイ・オー・データ機器 UD-LT2 ファームウェア アイ・オー・データ製ルーターUD-LT2における複数の脆弱性 CWE-78
CWE-Other
CVE-2025-20617
CVE-2025-22450
CVE-2025-23237
2025-01-22 12:08 2025-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1291 - - - Improper handling of invalid nested page table entries in the IOMMU may allow a privileged attacker to induce page table entry (PTE) faults to bypass RMP checks in SEV-SNP, potentially leading to a l… - CVE-2023-20582 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1292 - - - Improper access control in the IOMMU may allow a privileged attacker to bypass RMP checks, potentially leading to a loss of guest memory integrity. - CVE-2023-20581 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1293 - - - Improper access control in the fTPM driver in the trusted OS could allow a privileged attacker to corrupt system memory, potentially leading to loss of integrity, confidentiality, or availability. - CVE-2023-20515 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1294 - - - The Platform component of Mitel OpenScape 4000 and OpenScape 4000 Manager V11 R0.22.0 through V11 R0.22.1, V10 R1.54.0 through V10 R1.54.1, and V10 R1.42.6 and earlier could allow an unauthenticated … - CVE-2025-23094 2025-02-12 07:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1295 - - - NetMod VPN Client 5.3.1 is vulnerable to DLL injection, allowing an attacker to execute arbitrary code by placing a malicious DLL in a directory where the application loads dependencies. This vulnera… - CVE-2024-57426 2025-02-12 07:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1296 8.8 HIGH
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2025-21283 2025-02-12 07:14 2025-02-7 Show GitHub Exploit DB Packet Storm
1297 8.8 HIGH
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2025-21342 2025-02-12 07:13 2025-02-7 Show GitHub Exploit DB Packet Storm
1298 4.3 MEDIUM
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability NVD-CWE-noinfo
CVE-2025-21404 2025-02-12 07:00 2025-02-7 Show GitHub Exploit DB Packet Storm
1299 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-12315. Reason: This candidate is a reservation duplicate of CVE-2024-12315. Notes: All CVE users should reference … - CVE-2025-0989 2025-02-12 06:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1300 - - - Improper input validation within the AmdPspP2CmboxV2 driver may allow a privileged attacker to overwrite SMRAM, leading to arbitrary code execution. - CVE-2024-21925 2025-02-12 06:15 2025-02-12 Show GitHub Exploit DB Packet Storm