Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 11, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
101 4.8 警告
Network
phpMyFAQ phpMyFAQ phpMyFAQ におけるクロスサイトスクリプティングの脆弱性 New CWE-79
CWE-79
CVE-2024-29179 2025-01-10 14:40 2024-03-25 Show GitHub Exploit DB Packet Storm
102 2.7
Network
phpMyFAQ phpMyFAQ phpMyFAQ におけるパストラバーサルの脆弱性 New CWE-22
CWE-22
CVE-2024-29196 2025-01-10 14:40 2024-03-26 Show GitHub Exploit DB Packet Storm
103 7.1 重要
Local
eProsima Fast-DDS eProsima の Fast-DDS における脆弱性 New CWE-noinfo
情報不足
CVE-2024-30916 2025-01-10 14:40 2024-04-11 Show GitHub Exploit DB Packet Storm
104 6.5 警告
Network
sixlabors imagesharp sixlabors の imagesharp における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
CWE-789
CVE-2024-32035 2025-01-10 14:40 2024-04-15 Show GitHub Exploit DB Packet Storm
105 9.8 緊急
Network
Wazuh Inc. Wazuh Wazuh Inc. の Wazuh における境界外書き込みに関する脆弱性 New CWE-122
CWE-787
CVE-2024-32038 2025-01-10 14:40 2024-04-19 Show GitHub Exploit DB Packet Storm
106 6.5 警告
Network
argoproj argo cd argoproj の argo cd における脆弱性 New CWE-400
CWE-noinfo
CVE-2024-32476 2025-01-10 14:40 2024-05-14 Show GitHub Exploit DB Packet Storm
107 5.4 警告
Network
Wpmet elementskit Wpmet の WordPress 用 elementskit におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4452 2025-01-10 14:40 2024-05-21 Show GitHub Exploit DB Packet Storm
108 6.5 警告
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS におけるリソースのロックに関する脆弱性 New CWE-667
CWE-765
CVE-2024-49602 2025-01-10 14:40 2024-12-9 Show GitHub Exploit DB Packet Storm
109 4.3 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server&…
Windows ワイヤレス ワイド エリア ネットワーク サービス (WwanSvc) の情報漏えいの脆弱性 New CWE-125
CWE-noinfo
CVE-2024-49098 2025-01-10 14:38 2024-12-10 Show GitHub Exploit DB Packet Storm
110 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server&…
Windows PrintWorkflowUserSvc の特権昇格の脆弱性 New CWE-362
CWE-416
CWE-591
CVE-2024-49097 2025-01-10 14:34 2024-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 11, 2025, 5:03 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276611 - ez_systems httpbench ezhttpbench.php in eZ httpbench 1.1 allows remote attackers to read arbitrary files via a full pathname in the AnalyseSite parameter. NVD-CWE-Other
CVE-2002-1818 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276612 - tinyhttpd tinyhttpd Directory traversal vulnerability in TinyHTTPD 0.1 .0 allows remote attackers to read or execute arbitrary files via a ".." (dot dot) in the URL. NVD-CWE-Other
CVE-2002-1819 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276613 - ultimate_php_board ultimate_php_board Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized actions via direct requests to (1) admin_members.php, (2) admin_config.php, (3) adm… NVD-CWE-Other
CVE-2002-1821 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276614 - lonerunner zeroo_http_server Buffer overflow in the HttpGetRequest function in Zeroo HTTP server 1.5 allows remote attackers to execute arbitrary code via a long HTTP request. NVD-CWE-Other
CVE-2002-1823 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276615 - wasd wasd_http_server Format string vulnerability in PerlRTE_example1.pl in WASD 7.1, 7.2.0 through 7.2.3, and 8.0.0 allows remote attackers to execute arbitrary commands or crash the server via format strings in the $nam… NVD-CWE-Other
CVE-2002-1825 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276616 - grsecurity grsecurity_kernel_patch grsecurity 1.9.4 for Linux kernel 2.4.18 allows local users to bypass read-only permissions by using mmap to directly map /dev/mem or /dev/kmem to kernel memory. NVD-CWE-Other
CVE-2002-1826 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276617 - sendmail sendmail Sendmail 8.9.0 through 8.12.3 allows local users to cause a denial of service by obtaining an exclusive lock on the (1) alias, (2) map, (3) statistics, and (4) pid files. NVD-CWE-Other
CVE-2002-1827 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276618 - savant savant_webserver Savant Webserver 3.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request with a negative Content-Length value. NVD-CWE-Other
CVE-2002-1828 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276619 - microsoft msn_messenger Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via an invite request that contains hex-encoded spaces (%20) in the Invitation-Cookie fiel… NVD-CWE-Other
CVE-2002-1831 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
276620 - scaramanga firestorm_ids Unknown vulnerability in the "ipopts decode" functionality in Firestorm IDS 0.4.0 through 0.4.2 allows remote attackers to cause a denial of service (crash) via certain IP options. NVD-CWE-Other
CVE-2002-1832 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm