Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1231 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2023-52559 2025-01-20 16:39 2023-09-25 Show GitHub Exploit DB Packet Storm
1232 9.8 緊急
Network
Argie Online courseware Argie の Online Courseware における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-3419 2025-01-20 16:32 2024-04-7 Show GitHub Exploit DB Packet Storm
1233 5.3 警告
Network
RadiusTheme classified listing - classified ads & business directory RadiusTheme の WordPress 用 classified listing - classified ads & business directory における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-1352 2025-01-20 16:24 2024-04-9 Show GitHub Exploit DB Packet Storm
1234 8.8 重要
Network
illumio core policy compute engine Illumio の Illumio Core Policy Compute Engine における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2023-5183 2025-01-20 16:24 2023-09-27 Show GitHub Exploit DB Packet Storm
1235 6.5 警告
Network
Hire Web Xperts Passwords Manager Hire Web Xperts の WordPress 用 Passwords Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-12615 2025-01-20 16:17 2024-12-13 Show GitHub Exploit DB Packet Storm
1236 4.3 警告
Network
zixn Buy one click WooCommerce zixn の WordPress 用 Buy one click WooCommerce における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-10854 2025-01-20 16:06 2024-11-13 Show GitHub Exploit DB Packet Storm
1237 6.1 警告
Network
WP Brutal AI project WP Brutal AI WP Brutal AI project の WordPress 用 WP Brutal AI における脆弱性 - CVE-2023-2605 2025-01-20 16:03 2023-06-27 Show GitHub Exploit DB Packet Storm
1238 7.8 重要
Local
Huawei curiem-wfg9b ファームウェア Huawei の CurieM-WFG9B ファームウェアにおける境界外書き込みに関する脆弱性 CWE-130
CWE-787
CVE-2023-52547 2025-01-20 16:03 2024-05-28 Show GitHub Exploit DB Packet Storm
1239 7.3 重要
Network
awesomesupport awesome support wordpress helpdesk & support Awesome Support Team の WordPress 用 Awesome Support - WordPress HelpDesk & Support Plugin における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2023-51537 2025-01-20 15:54 2023-12-20 Show GitHub Exploit DB Packet Storm
1240 5.4 警告
Network
kaliforms Contact Form builder with drag & drop for WordPress - Kali Forms kaliforms の WordPress 用 Contact Form builder with drag & drop for WordPress - Kali Forms における脆弱性 CWE-noinfo
情報不足
CVE-2024-1218 2025-01-20 15:49 2024-02-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 6, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276351 - ad2000 free-sw_leger Cross-site scripting (XSS) vulnerability in AD2000 free-sw leger (aka Web Conference Room Free) 1.6.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vector… CWE-79
Cross-site Scripting
CVE-2009-2240 2009-06-30 13:00 2009-06-28 Show GitHub Exploit DB Packet Storm
276352 - unisys business_information_server Stack-based buffer overflow in mnet.exe in Unisys Business Information Server (BIS) 10 and 10.1 on Windows allows remote attackers to execute arbitrary code via a crafted TCP packet. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-1628 2009-06-29 13:00 2009-06-27 Show GitHub Exploit DB Packet Storm
276353 - paessler prtg_traffic_grapher
prtg_traffic_grapher6.0.5.416
Cross-site scripting (XSS) vulnerability in the Monitor_Bandwidth function in PRTG Traffic Grapher 6.2.2.977 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified… CWE-79
Cross-site Scripting
CVE-2009-1849 2009-06-29 13:00 2009-06-2 Show GitHub Exploit DB Packet Storm
276354 - microsoft windows_2003_server
windows_vista
win32k.sys in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (system crash) via vectors related to CreateWindow, TranslateMessage, and DispatchMessage, possib… CWE-362
Race Condition
CVE-2008-6819 2009-06-29 13:00 2009-06-2 Show GitHub Exploit DB Packet Storm
276355 - peter_wolanin openid Cross-site scripting (XSS) vulnerability in OpenID 5.x before 5.x-1.2, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2008-6835 2009-06-29 13:00 2009-06-28 Show GitHub Exploit DB Packet Storm
276356 - peter_wolanin openid Cross-site request forgery (CSRF) vulnerability in OpenID 5.x before 5x.-1.2, a module for Drupal, allows remote attackers to hijack the authentication of unspecified victims to delete OpenID identit… CWE-352
 Origin Validation Error
CVE-2008-6836 2009-06-29 13:00 2009-06-28 Show GitHub Exploit DB Packet Storm
276357 - foxitsoftware jpeg2000_jbig2_decoder_add-on
foxit_reader
The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly handle a fatal error during decoding of a JPEG2000 (aka JPX) header, which allows … CWE-399
 Resource Management Errors
CVE-2009-0691 2009-06-26 13:00 2009-06-24 Show GitHub Exploit DB Packet Storm
276358 - serendipitynz serene_bach SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predictable session id, which makes it easier for remote attackers to hijack sessions … NVD-CWE-Other
CVE-2009-2165 2009-06-26 13:00 2009-06-23 Show GitHub Exploit DB Packet Storm
276359 - urdland urd Multiple cross-site scripting (XSS) vulnerabilities in URD before 0.6.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to the fatal_error page and unspecified other… CWE-79
Cross-site Scripting
CVE-2009-2215 2009-06-26 13:00 2009-06-26 Show GitHub Exploit DB Packet Storm
276360 - wowbb wowbb_web_forum Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa… NVD-CWE-Other
CVE-2004-2181 2009-06-25 13:25 2004-12-31 Show GitHub Exploit DB Packet Storm