Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1511 9.8 緊急
Network
マイクロソフト Microsoft Windows Server 2025
Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Window…
Windows Lightweight Directory Access Protocol (LDAP) のリモートでコードが実行される脆弱性 CWE-190
CWE-noinfo
CVE-2024-49112 2025-01-17 16:55 2024-12-10 Show GitHub Exploit DB Packet Storm
1512 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2025
Microsoft Windows Server 2022
Windows リモート デスクトップ サービスのリモートでコードが実行される脆弱性 CWE-362
CWE-416
CWE-591
CVE-2024-49115 2025-01-17 16:49 2024-12-10 Show GitHub Exploit DB Packet Storm
1513 6.4 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-190
CWE-noinfo
CVE-2024-28923 2025-01-17 16:46 2024-04-9 Show GitHub Exploit DB Packet Storm
1514 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2022-49035 2025-01-17 16:43 2022-09-24 Show GitHub Exploit DB Packet Storm
1515 6.7 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server&…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-28924 2025-01-17 16:41 2024-04-9 Show GitHub Exploit DB Packet Storm
1516 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-47072 2025-01-17 16:40 2021-05-14 Show GitHub Exploit DB Packet Storm
1517 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-46974 2025-01-17 16:39 2021-05-3 Show GitHub Exploit DB Packet Storm
1518 8.8 重要
Network
マイクロソフト Microsoft Visual Studio
Microsoft ODBC Driver
Microsoft SQL Server
SQL Server 用 Microsoft ODBC ドライバーのリモートでコードが実行される脆弱性 CWE-190
CWE-noinfo
CVE-2024-28929 2025-01-17 16:36 2024-04-9 Show GitHub Exploit DB Packet Storm
1519 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2024-56622 2025-01-17 16:34 2024-12-4 Show GitHub Exploit DB Packet Storm
1520 5.3 警告
Network
三菱電機 (複数の製品) 複数の三菱電機製 FA 製品の Ethernet 機能におけるサービス運用妨害(DoS)の脆弱性 CWE-410
不十分なリソースプール
CVE-2023-7033 2025-01-17 16:32 2024-02-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
911 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the pagetitle POST request parameter. CWE-89
SQL Injection
CVE-2025-25352 2025-02-15 04:43 2025-02-14 Show GitHub Exploit DB Packet Storm
912 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the contactnumber POST request parameter. CWE-89
SQL Injection
CVE-2025-25354 2025-02-15 04:39 2025-02-14 Show GitHub Exploit DB Packet Storm
913 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the email POST request parameter. CWE-89
SQL Injection
CVE-2025-25357 2025-02-15 04:38 2025-02-14 Show GitHub Exploit DB Packet Storm
914 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the " todate" POST req… CWE-89
SQL Injection
CVE-2025-25356 2025-02-15 04:38 2025-02-14 Show GitHub Exploit DB Packet Storm
915 9.8 CRITICAL
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the dateexpense parameter. CWE-89
SQL Injection
CVE-2025-25351 2025-02-15 04:35 2025-02-13 Show GitHub Exploit DB Packet Storm
916 9.8 CRITICAL
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the costitem parameter. CWE-89
SQL Injection
CVE-2025-25349 2025-02-15 04:34 2025-02-13 Show GitHub Exploit DB Packet Storm
917 - - - A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online Shopping Portal v2.1, which allows remote attackers to execute arbitrary code via orderid POST request param… - CVE-2025-26156 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
918 - - - SQL Injection vulnerability in FeMiner wms wms 1.0 allows a remote attacker to obtain sensitive information via the parameter "itemid." - CVE-2025-25993 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
919 - - - SQL Injection vulnerability in FeMiner wms 1.0 allows a remote attacker to obtain sensitive information via the inquire_inout_item.php component. - CVE-2025-25992 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
920 - - - Cross Site Scripting vulnerability in hooskcms v.1.8 allows a remote attacker to cause a denial of service via the custom Link title parameter and the Title parameter. - CVE-2025-25988 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm