Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1061 9.8 緊急
Network
netentsec application security gateway netentsec の application security gateway における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-2021 2025-01-22 13:39 2024-03-1 Show GitHub Exploit DB Packet Storm
1062 7.5 重要
Network
Plone Foundation Plone Plone Foundation の Plone における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
CWE-276
CVE-2024-22889 2025-01-22 13:39 2024-03-6 Show GitHub Exploit DB Packet Storm
1063 5.3 警告
Network
WonderCMS WonderCMS WonderCMS におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
CWE-918
CVE-2024-27563 2025-01-22 13:39 2024-03-5 Show GitHub Exploit DB Packet Storm
1064 6.5 警告
Adjacent
FRRouting Project FRRouting FRRouting Project の FRRouting における脆弱性 CWE-noinfo
情報不足
CVE-2024-27913 2025-01-22 13:39 2024-02-28 Show GitHub Exploit DB Packet Storm
1065 9.8 緊急
Network
XWiki xwiki XWiki の xwiki におけるコードインジェクションの脆弱性 CWE-94
CWE-95
CVE-2024-31982 2025-01-22 13:39 2024-04-10 Show GitHub Exploit DB Packet Storm
1066 9.8 緊急
Network
マイクロフォーカス株式会社 imanager マイクロフォーカス株式会社の imanager におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CVE-2024-3484 2025-01-22 13:38 2024-05-15 Show GitHub Exploit DB Packet Storm
1067 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21139 2025-01-22 12:25 2025-01-14 Show GitHub Exploit DB Packet Storm
1068 7.8 重要
Local
IBM IBM VIOS
IBM AIX
IBM の IBM VIOS および IBM AIX における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-47115 2025-01-22 12:18 2024-12-5 Show GitHub Exploit DB Packet Storm
1069 7.8 重要
Local
アドビシステムズ Adobe Substance 3D Designer アドビの Adobe Substance 3D Designer における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2025-21137 2025-01-22 12:11 2025-01-14 Show GitHub Exploit DB Packet Storm
1070 7.5 重要
Network
株式会社アイ・オー・データ機器 UD-LT2 ファームウェア アイ・オー・データ製ルーターUD-LT2における複数の脆弱性 CWE-78
CWE-Other
CVE-2025-20617
CVE-2025-22450
CVE-2025-23237
2025-01-22 12:08 2025-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 11, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274711 - novell netmail This vulnerability is addressed in the following product update: Novell, NetMail, 3.52e FTF2 NVD-CWE-Other
CVE-2006-6762 2011-03-8 11:46 2006-12-27 Show GitHub Exploit DB Packet Storm
274712 - pnamazu pnamazu Cross-site scripting (XSS) vulnerability in pnamazu 2006.02.28 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NVD-CWE-Other
CVE-2006-6782 2011-03-8 11:46 2006-12-28 Show GitHub Exploit DB Packet Storm
274713 - ultimate_php_board ultimate_php_board Direct static code injection vulnerability in chat/login.php in Ultimate PHP Board (UPB) 2.0b1 and earlier allows remote attackers to inject arbitrary PHP code via the username parameter, which is in… NVD-CWE-Other
CVE-2006-6790 2011-03-8 11:46 2006-12-28 Show GitHub Exploit DB Packet Storm
274714 - baalasp smart_form_portal Cross-site scripting (XSS) vulnerability in addpost1.asp in BaalAsp forum allows remote attackers to inject arbitrary web script or HTML via the name parameter. NOTE: The provenance of this informat… NVD-CWE-Other
CVE-2006-6075 2011-03-8 11:45 2006-11-25 Show GitHub Exploit DB Packet Storm
274715 - ibm websphere_application_server Multiple unspecified vulnerabilities in IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) have unknown impact and attack vectors, related to (1) a "Potential security vulnerability" … NVD-CWE-Other
CVE-2006-6135 2011-03-8 11:45 2006-11-28 Show GitHub Exploit DB Packet Storm
274716 - ibm websphere_application_server IBM WebSphere Application Server 6.1.0 before Fix Pack 3 (6.1.0.3) does not perform EAL4 authentication checks at the proper time during "registering of response operation," which has unknown impact … NVD-CWE-noinfo
CVE-2006-6136 2011-03-8 11:45 2006-11-28 Show GitHub Exploit DB Packet Storm
274717 - sisfo_kampus sisfo_kampus Directory traversal vulnerability in downloadexcel.php in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to read arbitrary files via the fn parameter. NOTE: the provenance of this informatio… NVD-CWE-Other
CVE-2006-6139 2011-03-8 11:45 2006-11-28 Show GitHub Exploit DB Packet Storm
274718 - sisfo_kampus sisfo_kampus PHP remote file inclusion vulnerability in Sisfo Kampus 2006 (Semarang 3) allows remote attackers to execute arbitrary PHP code via a URL in the slnt parameter to (1) index.php and (2) print.php. NO… NVD-CWE-Other
CVE-2006-6140 2011-03-8 11:45 2006-11-28 Show GitHub Exploit DB Packet Storm
274719 - takeshi_kanno haru_free_pdf_library Buffer overflow in the HPDF_Page_Circle function in hpdf_page_operator.c in Takeshi Kanno Haru Free PDF Library (libharu2, aka libharu) 2.0.7 and earlier allows context-dependent attackers to cause a… NVD-CWE-Other
CVE-2006-6146 2011-03-8 11:45 2006-11-29 Show GitHub Exploit DB Packet Storm
274720 - messagerie_locale messagerie_locale PHP remote file inclusion vulnerability in centre.php in Messagerie Locale as of 20061127 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NOTE: the provenance … NVD-CWE-Other
CVE-2006-6151 2011-03-8 11:45 2006-11-29 Show GitHub Exploit DB Packet Storm