Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1411 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft OLE DB Driver
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28940 2025-01-17 22:14 2024-04-9 Show GitHub Exploit DB Packet Storm
1412 8.8 重要
Network
マイクロソフト Microsoft SQL Server
Microsoft OLE DB Driver
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-29046 2025-01-17 22:00 2024-04-9 Show GitHub Exploit DB Packet Storm
1413 8.8 重要
Network
マイクロソフト Microsoft ODBC Driver
Microsoft SQL Server
Microsoft Visual Studio
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-28937 2025-01-17 21:55 2024-04-9 Show GitHub Exploit DB Packet Storm
1414 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2016
Microsoft Windows Server 2012
Microsoft Windows Server 2019
Microso…
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-416
CWE-591
CVE-2024-49128 2025-01-17 21:48 2024-12-10 Show GitHub Exploit DB Packet Storm
1415 6.8 警告
Physics
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server&…
Windows モバイル ブロードバンド ドライバーの特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2024-49110 2025-01-17 21:46 2024-12-10 Show GitHub Exploit DB Packet Storm
1416 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microsoft Window…
Windows Lightweight Directory Access Protocol (LDAP) のリモートでコードが実行される脆弱性 CWE-362
CWE-416
CVE-2024-49127 2025-01-17 21:44 2024-12-10 Show GitHub Exploit DB Packet Storm
1417 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microsoft Window…
Windows ローカル セキュリティ機関サブシステム サービス (LSASS) のリモートでコードが実行される脆弱性 CWE-362
CWE-416
CWE-591
CVE-2024-49126 2025-01-17 21:42 2024-12-10 Show GitHub Exploit DB Packet Storm
1418 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Windows Server&…
ワイヤレス広域ネットワーク サービス (WwanSvc) の特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2024-49111 2025-01-17 21:40 2024-12-10 Show GitHub Exploit DB Packet Storm
1419 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2024-57872 2025-01-17 21:35 2024-11-20 Show GitHub Exploit DB Packet Storm
1420 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2024-56618 2025-01-17 21:33 2024-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 6, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276851 - dar dar The blowfish mode in DAR before 2.3.4 uses weak Blowfish-CBC cryptography by (1) discarding random bits by the blowfish::make_ivec function in libdar/crypto.cpp that results in predictable and repeat… NVD-CWE-Other
CVE-2007-3528 2008-11-15 15:53 2007-07-4 Show GitHub Exploit DB Packet Storm
276852 - wordpress wordpress
wordpress_mu
Unrestricted file upload vulnerability in WordPress before 2.2.1 and WordPress MU before 1.2.3 allows remote authenticated users to upload and execute arbitrary PHP code by making a post that specifi… NVD-CWE-Other
CVE-2007-3543 2008-11-15 15:53 2007-07-4 Show GitHub Exploit DB Packet Storm
276853 - wordpress wordpress
wordpress_mu
Successful exploitation requires valid Editor credentials and that the system is configured to allow uploads. NVD-CWE-Other
CVE-2007-3543 2008-11-15 15:53 2007-07-4 Show GitHub Exploit DB Packet Storm
276854 - jedox palo The Jedox Palo 1.5 client transmits the password in cleartext, which might allow remote attackers to obtain the password by sniffing the network, as demonstrated by starting Excel with the Palo plugi… NVD-CWE-Other
CVE-2007-3581 2008-11-15 15:53 2007-07-6 Show GitHub Exploit DB Packet Storm
276855 - vtiger vtiger_crm vtiger CRM before 5.0.3 allows remote authenticated users to import and export the information for a contact even when they only have the View permission. NVD-CWE-Other
CVE-2007-3599 2008-11-15 15:53 2007-07-7 Show GitHub Exploit DB Packet Storm
276856 - vtiger vtiger_crm WordPlugin in the wordintegration component in vtiger CRM before 5.0.3 allows remote authenticated users to bypass field level security permissions and merge arbitrary fields in an Email template, as… NVD-CWE-Other
CVE-2007-3600 2008-11-15 15:53 2007-07-7 Show GitHub Exploit DB Packet Storm
276857 - vtiger vtiger_crm vtiger CRM before 5.0.3, when a migrated build is used, allows remote authenticated users to read certain other users' calendar activities via a (1) home page or (2) event list view. NVD-CWE-Other
CVE-2007-3601 2008-11-15 15:53 2007-07-7 Show GitHub Exploit DB Packet Storm
276858 - squirrelmail gpg_plugin
squirrelmail
Multiple unspecified vulnerabilities in the G/PGP (GPG) Plugin 2.1 for Squirrelmail allow remote attackers to execute arbitrary commands via unspecified vectors. NOTE: this information is based upon… NVD-CWE-Other
CVE-2007-3636 2008-11-15 15:53 2007-07-10 Show GitHub Exploit DB Packet Storm
276859 - microsoft register_server Unspecified vulnerability in Microsoft Register Server (REGSVR) allows attackers to cause a denial of service via a crafted DLL library. NVD-CWE-Other
CVE-2007-3658 2008-11-15 15:53 2007-07-11 Show GitHub Exploit DB Packet Storm
276860 - microsoft register_server Eleytt Security Laboratories Vulnerability Advisory: Denial of service conditions due to null dereference. NVD-CWE-Other
CVE-2007-3658 2008-11-15 15:53 2007-07-11 Show GitHub Exploit DB Packet Storm