Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1581 6.8 警告
Physics
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 10
Microsoft Windows 11
Microsoft Windows Server 2019
Windows モバイル ブロードバンド ドライバーのリモート コード実行に対する脆弱性 CWE-190
CWE-noinfo
CVE-2024-30021 2025-01-17 15:00 2024-05-14 Show GitHub Exploit DB Packet Storm
1582 6.5 警告
Network
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microso…
DHCP Server サービスのサービス拒否の脆弱性 CWE-400
CWE-noinfo
CVE-2024-30019 2025-01-17 14:51 2024-05-14 Show GitHub Exploit DB Packet Storm
1583 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Window…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 CWE-197
CWE-noinfo
CVE-2024-30014 2025-01-17 14:49 2024-05-14 Show GitHub Exploit DB Packet Storm
1584 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Window…
Lightweight Directory Access Protocol (LDAP) クライアントのリモートでコードが実行される脆弱性 CWE-362
競合状態
CVE-2024-49124 2025-01-17 14:41 2024-12-10 Show GitHub Exploit DB Packet Storm
1585 8.1 重要
Network
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Window…
Microsoft Message Queuing (MSMQ) のリモートでコードが実行される脆弱性 CWE-362
CWE-416
CVE-2024-49122 2025-01-17 14:37 2024-12-10 Show GitHub Exploit DB Packet Storm
1586 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows Server 2025
Microso…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-49125 2025-01-17 14:32 2024-12-10 Show GitHub Exploit DB Packet Storm
1587 9.8 緊急
Network
72crm Wukong CRM 72crm の Wukong CRM における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
CWE-502
CVE-2024-23052 2025-01-17 14:28 2024-02-29 Show GitHub Exploit DB Packet Storm
1588 6.1 警告
Network
Meow Apps ai engine Meow Apps の WordPress 用 ai engine におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0378 2025-01-17 14:03 2024-03-2 Show GitHub Exploit DB Packet Storm
1589 3.3
Local
IBM IBM TXSeries for Multiplatforms IBM の IBM TXSeries for Multiplatforms における脆弱性 CWE-525
CWE-Other
CVE-2024-22343 2025-01-17 13:53 2024-05-9 Show GitHub Exploit DB Packet Storm
1590 6.5 警告
Network
IBM IBM Aspera Faspex IBM の IBM Aspera Faspex におけるエンコードおよびエスケープに関する脆弱性 CWE-116
CWE-644
CVE-2022-22399 2025-01-17 13:52 2022-07-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 19, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
411 - - - An attacker may modify the URL to discover sensitive information about the target network. CWE-200
Information Exposure
CVE-2025-25281 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
412 - - - Zulip is an open source team chat application. A weekly cron job (added in 50256f48314250978f521ef439cafa704e056539) demotes channels to being "inactive" after they have not received traffic for 180 … CWE-200
Information Exposure
CVE-2025-25195 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
413 - - - mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands. CWE-78
OS Command 
CVE-2025-25067 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
414 - - - The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files with… CWE-306
Missing Authentication for Critical Function
CVE-2025-24865 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
415 - - - An attacker may inject commands via specially-crafted post requests. CWE-77
Command Injection
CVE-2025-24861 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
416 - - - With a specially crafted Python script, an attacker could send continuous startMeasurement commands over an unencrypted Bluetooth connection to the affected device. This would prevent the device fr… CWE-248
 Uncaught Exception
CVE-2025-24836 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
417 - - - An attacker could obtain firmware files and reverse engineer their intended use leading to loss of confidentiality and integrity of the hardware devices enabled by the Qardio iOS and Android applic… CWE-552
 Files or Directories Accessible to External Parties
CVE-2025-23421 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
418 - - - mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the victim in to visiting a… CWE-352
 Origin Validation Error
CVE-2025-23411 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
419 - - - mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2025-22896 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm
420 - - - The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engin… CWE-359
 Exposure of Private Personal Information to an Unauthorized Actor
CVE-2025-20615 2025-02-14 07:15 2025-02-14 Show GitHub Exploit DB Packet Storm