Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
121 7.5 重要
Network
Apache Software Foundation
日立
Hitachi Application Server for Developers
uCosminexus Developer
Hitachi Web Server
uCosminexus Application Server Express
uCosminexus&nbs…
Apache Software Foundation の Apache HTTP Server 等複数ベンダの製品における NULL ポインタデリファレンスに関する脆弱性 Update CWE-476
NULL ポインタデリファレンス
CVE-2024-38477 2025-01-30 15:09 2024-07-1 Show GitHub Exploit DB Packet Storm
122 - - OpenSSL Project OpenSSL OpenSSL の関数 SSL_select_next_proto におけるバッファオーバーリードの脆弱性(OpenSSL Security Advisory [27th June 2024]) Update CWE-126
バッファオーバーリード
CVE-2024-5535 2025-01-30 14:50 2024-07-3 Show GitHub Exploit DB Packet Storm
123 9.8 緊急
Network
SQLite SQLite SQLite における解放済みメモリの使用に関する脆弱性 Update CWE-416
解放済みメモリの使用
CVE-2020-11656 2025-01-30 14:08 2020-04-3 Show GitHub Exploit DB Packet Storm
124 - - B&R Industrial Automation Automation Runtime
B&R mapp View
複数の B&R 製品における非推奨暗号アルゴリズムの使用の脆弱性 New CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2024-8603 2025-01-30 13:51 2025-01-29 Show GitHub Exploit DB Packet Storm
125 7.5 重要
Network
マイクロソフト Microsoft Entra ID Microsoft Entra ID の特権昇格の脆弱性 New CWE-284
CWE-Other
CVE-2024-43477 2025-01-30 13:32 2024-08-22 Show GitHub Exploit DB Packet Storm
126 8.8 重要
Network
マイクロソフト Azure Managed Instance for Apache Cassandra Azure Managed Instance for Apache Cassandra の特権昇格の脆弱性 New CWE-284
CWE-Other
CVE-2024-38175 2025-01-30 12:29 2024-08-20 Show GitHub Exploit DB Packet Storm
127 8.8 重要
Network
マイクロソフト Microsoft SQL Server Microsoft SQL Server の特権昇格の脆弱性 New CWE-20
CWE-noinfo
CVE-2024-37965 2025-01-30 12:17 2024-09-10 Show GitHub Exploit DB Packet Storm
128 4.3 警告
Network
Linkz.ai Linkz.ai - Automatic link previews on hover Linkz.ai の WordPress 用 Linkz.ai - Automatic link previews on hover における認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2024-9587 2025-01-30 12:12 2024-10-11 Show GitHub Exploit DB Packet Storm
129 7.5 重要
Network
デル NativeEdge Orchestrator デルの NativeEdge Orchestrator における脆弱性 New CWE-1230
CWE-noinfo
CVE-2024-53291 2025-01-30 12:09 2024-12-25 Show GitHub Exploit DB Packet Storm
130 7.8 重要
Local
デル NativeEdge Orchestrator デルの NativeEdge Orchestrator における脆弱性 New CWE-250
CWE-noinfo
CVE-2024-47978 2025-01-30 12:08 2024-12-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 1, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280271 - youngzsoft cmailserver Buffer overflow in YoungZSoft CMailServer 3.30 allows remote attackers to execute arbitrary code via a long USER argument. NVD-CWE-Other
CVE-2002-0799 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
280272 - working_resources_inc. badblue BadBlue 1.7.0 allows remote attackers to list the contents of directories via a URL with an encoded '%' character at the end. NVD-CWE-Other
CVE-2002-0800 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
280273 - macromedia jrun Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to the filter with a long HTTP host header field in a URL for a … NVD-CWE-Other
CVE-2002-0801 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
280274 - mozilla bugzilla Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when configured to perform reverse DNS lookups, allows remote attackers to bypass IP restrictions by connecting from a system with a spoofed reve… NVD-CWE-Other
CVE-2002-0804 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
280275 - mozilla bugzilla Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, (1) creates new directories with world-writable permissions, and (2) creates the params file with world-writable permissions, which allows local … NVD-CWE-Other
CVE-2002-0805 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
280276 - yahoo messenger Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary script as other users via the addview parameter of a ymsgr URI. NVD-CWE-Other
CVE-2002-0032 2008-09-6 05:27 2002-07-26 Show GitHub Exploit DB Packet Storm
280277 - ibm lotus_domino_server Lotus Domino Servers 5.x, 4.6x, and 4.5x allows attackers to bypass the intended Reader and Author access list for a document's object via a Notes API call (NSFDbReadObject) that directly accesses th… NVD-CWE-Other
CVE-2002-0037 2008-09-6 05:27 2002-04-22 Show GitHub Exploit DB Packet Storm
280278 - sgi irix rpcbind in SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, allows remote attackers to cause a denial of service (crash) via malformed RPC packets with invalid lengths. NVD-CWE-Other
CVE-2002-0039 2008-09-6 05:27 2002-03-28 Show GitHub Exploit DB Packet Storm
280279 - sgi irix Vulnerability in SGI IRIX 6.5.11 through 6.5.15f allows local users to cause privileged applications to dump core via the HOSTALIASES environment variable, which might allow the users to gain privile… NVD-CWE-Other
CVE-2002-0040 2008-09-6 05:27 2002-03-28 Show GitHub Exploit DB Packet Storm
280280 - sgi irix Unknown vulnerability in Mail for SGI IRIX 6.5 through 6.5.15f, and possibly earlier versions, when running with the -R option, allows local and remote attackers to cause a core dump. NVD-CWE-Other
CVE-2002-0041 2008-09-6 05:27 2002-04-22 Show GitHub Exploit DB Packet Storm