Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 10, 2025, 10:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
111 4.9 警告
Network
WPZOOM beaver builder addons WPZOOM の WordPress 用 beaver builder addons におけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2024-37464 2025-01-9 11:24 2024-07-9 Show GitHub Exploit DB Packet Storm
112 5.3 警告
Network
ZITADEL ZITADEL ZITADEL における観測可能な不一致に関する脆弱性 New CWE-203
CWE-203
CVE-2024-41952 2025-01-9 11:24 2024-07-31 Show GitHub Exploit DB Packet Storm
113 6.5 警告
Network
デル EMC PowerScale OneFS デルの EMC PowerScale OneFS における脆弱性 New CWE-400
CWE-noinfo
CVE-2024-42426 2025-01-9 11:24 2024-12-9 Show GitHub Exploit DB Packet Storm
114 5.4 警告
Network
Royal Elementor Addons Royal Elementor Addons and Templates Royal Elementor Addons の WordPress 用 Royal Elementor Addons and Templates におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4342 2025-01-9 11:24 2024-06-1 Show GitHub Exploit DB Packet Storm
115 6.5 警告
Network
ThimPress LearnPress ThimPress の WordPress 用 LearnPress における SQL インジェクションの脆弱性 New CWE-89
CWE-89
CVE-2024-7548 2025-01-9 11:23 2024-08-8 Show GitHub Exploit DB Packet Storm
116 8.8 重要
Network
マイクロソフト airlift.microsoft.com Airlift.microsoft.com の特権の昇格の脆弱性 New CWE-302
CWE-noinfo
CVE-2024-49056 2025-01-9 11:13 2024-11-12 Show GitHub Exploit DB Packet Storm
117 8.8 重要
Network
マイクロソフト Microsoft OLE DB Driver
Microsoft SQL Server
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 New CWE-122
CWE-noinfo
CVE-2024-28910 2025-01-9 10:59 2024-04-9 Show GitHub Exploit DB Packet Storm
118 5.4 警告
Network
IBM IBM Planning Analytics Local IBM の IBM Planning Analytics Local におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-31889 2025-01-9 10:54 2024-05-30 Show GitHub Exploit DB Packet Storm
119 8.8 重要
Network
マイクロソフト Microsoft OLE DB Driver
Microsoft SQL Server
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 New CWE-122
CWE-noinfo
CVE-2024-28915 2025-01-9 10:54 2024-04-9 Show GitHub Exploit DB Packet Storm
120 5.4 警告
Network
FastLine Media LLC Beaver Builder FastLine Media LLC の WordPress 用 Beaver Builder におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2925 2025-01-9 10:37 2024-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 10, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275681 - apple mac_os_x The HTTP proxy service in Server Admin for Mac OS X 10.3.9 does not restrict access when it is enabled, which allows remote attackers to use the proxy. NVD-CWE-Other
CVE-2005-1340 2008-09-6 05:48 2005-05-4 Show GitHub Exploit DB Packet Storm
275682 - apple mac_os_x
mac_os_x_server
Stack-based buffer overflow in the VPN daemon (vpnd) for Mac OS X before 10.3.9 allows local users to execute arbitrary code via a long -i (Server_id) argument. NVD-CWE-Other
CVE-2005-1343 2008-09-6 05:48 2005-05-3 Show GitHub Exploit DB Packet Storm
275683 - symantec antivirus_scan_engine
mail_security
norton_antivirus
norton_internet_security
norton_system_works
symav_filter_domino_nt
web_security
Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domin… NVD-CWE-Other
CVE-2005-1346 2008-09-6 05:48 2005-05-2 Show GitHub Exploit DB Packet Storm
275684 - drupal drupal Cross-site scripting (XSS) vulnerability in common.inc in Drupal before 4.5.2 allows remote attackers to inject arbitrary web script or HTML via certain inputs. NVD-CWE-Other
CVE-2005-0682 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
275685 - mlterm mlterm Integer overflow in mlterm 2.5.0 through 2.9.1, with gdk-pixbuf support enabled, allows remote attackers to execute arbitrary code via a large image file that is used as a background. NVD-CWE-Other
CVE-2005-0686 2008-09-6 05:47 2005-03-7 Show GitHub Exploit DB Packet Storm
275686 - hashcash hashcash Format string vulnerability in Hashcash 1.16 allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via format string specifiers in a reply addr… NVD-CWE-Other
CVE-2005-0687 2008-09-6 05:47 2005-03-6 Show GitHub Exploit DB Packet Storm
275687 - jowood_productions chaser Buffer overflow in JoWood Chaser 1.50 and earlier allows remote attackers to cause a denial of service (client or server crash) and execute arbitrary code via a long nickname. NVD-CWE-Other
CVE-2005-0693 2008-09-6 05:47 2005-03-7 Show GitHub Exploit DB Packet Storm
275688 - brt copperexport SQL injection vulnerability in the process_picture function xp_publish.php in CopperExport 0.2.1 allows remote attackers to execute arbitrary SQL commands, possibly via the (1) title, (2) caption, or… NVD-CWE-Other
CVE-2005-0697 2008-09-6 05:47 2005-03-7 Show GitHub Exploit DB Packet Storm
275689 - jason_hines phpweblog PHP remote file inclusion vulnerability in PHPWebLog 0.5.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the (1) G_PATH parameter to init.inc.php or the (2) PATH para… NVD-CWE-Other
CVE-2005-0698 2008-09-6 05:47 2005-03-7 Show GitHub Exploit DB Packet Storm
275690 - aztek_forum aztek_forum The export_index action in myadmin.php for Aztek Forum 4.0 allows remote attackers to obtain database files, possibly by setting the ATK_ADMIN cookie. NVD-CWE-Other
CVE-2005-0700 2008-09-6 05:47 2005-03-7 Show GitHub Exploit DB Packet Storm