Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1371 5.4 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-12851 2025-01-20 11:04 2024-12-20 Show GitHub Exploit DB Packet Storm
1372 5.4 警告
Network
Wpmet ElementsKit Elementor addons Wpmet の WordPress 用 ElementsKit Elementor addons におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-10091 2025-01-20 11:04 2024-10-26 Show GitHub Exploit DB Packet Storm
1373 5.4 警告
Network
WebTechStreet Elementor Addon Elements WebTechStreet の WordPress 用 Elementor Addon Elements におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1392 2025-01-20 10:53 2024-03-13 Show GitHub Exploit DB Packet Storm
1374 7.2 重要
Network
Ivanti connect secure
policy secure
Ivanti の connect secure および policy secure における OS コマンドインジェクションの脆弱性 CWE-78
CWE-78
CVE-2024-11006 2025-01-20 10:53 2024-11-12 Show GitHub Exploit DB Packet Storm
1375 7.2 重要
Network
Ivanti cloud services appliance Ivanti の cloud services appliance における SQL インジェクションの脆弱性 CWE-89
CWE-89
CVE-2024-11773 2025-01-20 10:53 2024-12-10 Show GitHub Exploit DB Packet Storm
1376 7.8 重要
Local
Huawei curiem-wfg9b ファームウェア Huawei の curiem-wfg9b ファームウェアにおける例外的な状態のチェックに関する脆弱性 CWE-754
CWE-754
CVE-2023-52710 2025-01-20 10:48 2024-05-28 Show GitHub Exploit DB Packet Storm
1377 7.8 重要
Local
Huawei curiem-wfg9b ファームウェア Huawei の curiem-wfg9b ファームウェアにおける脆弱性 CWE-284
CWE-noinfo
CVE-2023-52712 2025-01-20 10:48 2024-05-28 Show GitHub Exploit DB Packet Storm
1378 4.3 警告
Network
Stranger Studios Paid Memberships Pro Stranger Studios の WordPress 用 Paid Memberships Pro におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-0588 2025-01-20 10:47 2024-04-9 Show GitHub Exploit DB Packet Storm
1379 7.2 重要
Network
Ivanti connect secure Ivanti の connect secure における引数の挿入または変更に関する脆弱性 CWE-88
CWE-88
CVE-2024-11633 2025-01-20 10:47 2024-12-10 Show GitHub Exploit DB Packet Storm
1380 5.4 警告
Network
Stranger Studios Paid Memberships Pro Stranger Studios の WordPress 用 Paid Memberships Pro におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1407 2025-01-20 10:47 2024-06-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 5, 2025, 4:56 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275841 - martin_lambers mpop Martin Lambers mpop before 1.0.19, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the (1) subject's Common Name or (2) Subject Alternative Name field of an X.509 … CWE-310
Cryptographic Issues
CVE-2009-3941 2009-11-19 14:00 2009-11-17 Show GitHub Exploit DB Packet Storm
275842 - mozilla firefox The nsGIFDecoder2::GifWrite function in decoders/gif/nsGIFDecoder2.cpp in libpr0n in Mozilla Firefox before 3.5.5 allows remote attackers to cause a denial of service (NULL pointer dereference and ap… NVD-CWE-Other
CVE-2009-3978 2009-11-19 14:00 2009-11-19 Show GitHub Exploit DB Packet Storm
275843 - ibm tivoli_storage_manager Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7 and 5.4 before 5.4.2 allows remote attackers to execute arbitrary code via uns… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-3854 2009-11-18 16:00 2009-11-5 Show GitHub Exploit DB Packet Storm
275844 - ibm tivoli_storage_manager Multiple unspecified vulnerabilities in the (1) UNIX and (2) Linux backup-archive clients, and the (3) OS/400 API client, in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.6, 5.4 before 5.4.2, and… NVD-CWE-noinfo
CVE-2009-3855 2009-11-18 16:00 2009-11-5 Show GitHub Exploit DB Packet Storm
275845 - apple mac_os_x_server Buffer overflow in FTP Server in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a CWD command specifying a pathname in … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2832 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm
275846 - apple mac_os_x_server Per: http://support.apple.com/kb/HT3937 "This issue affects Mac OS X Server systems only" CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2832 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm
275847 - apple mac_os_x
mac_os_x_server
Buffer overflow in the UCCompareTextDefault API in International Components for Unicode in Apple Mac OS X 10.5.8 allows context-dependent attackers to execute arbitrary code or cause a denial of serv… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2833 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm
275848 - apple mac_os_x
mac_os_x_server
Per: http://support.apple.com/kb/HT3937 "This issue does not affect Mac OS X v10.6 systems" CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2833 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm
275849 - apple mac_os_x
mac_os_x_server
The kernel in Apple Mac OS X before 10.6.2 does not properly handle task state segments, which allows local users to gain privileges, cause a denial of service (system crash), or obtain sensitive inf… CWE-20
 Improper Input Validation 
CVE-2009-2835 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm
275850 - apple mac_os_x
mac_os_x_server
Race condition in Login Window in Apple Mac OS X 10.6.x before 10.6.2, when at least one account has a blank password, allows attackers to bypass password authentication and obtain login access to an… CWE-362
Race Condition
CVE-2009-2836 2009-11-17 16:03 2009-11-11 Show GitHub Exploit DB Packet Storm