Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
151 6.1 警告
Network
Liferay Digital Experience Platform Liferay の Digital Experience Platform におけるオープンリダイレクトの脆弱性 New CWE-601
CWE-601
CVE-2023-5190 2025-01-30 11:14 2023-09-26 Show GitHub Exploit DB Packet Storm
152 4.3 警告
Network
WordPress Go Go Custom Field Template WordPress Go Go の WordPress 用 Custom Field Template における重要な情報のセキュアでない格納に関する脆弱性 New CWE-922
重要な情報のセキュアでない格納
CVE-2023-6748 2025-01-30 11:14 2023-12-12 Show GitHub Exploit DB Packet Storm
153 4.8 警告
Network
WordPress Go Go Custom Field Template WordPress Go Go の WordPress 用 Custom Field Template におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0653 2025-01-30 11:14 2024-06-11 Show GitHub Exploit DB Packet Storm
154 7.3 重要
Network
Cozmoslabs Membership & Content Restriction - Paid Member Subscriptions Cozmoslabs の WordPress 用 Membership & Content Restriction - Paid Member Subscriptions におけるコードインジェクションの脆弱性 New CWE-94
コード・インジェクション
CVE-2024-10261 2025-01-30 11:14 2024-11-9 Show GitHub Exploit DB Packet Storm
155 9.8 緊急
Network
CE21, LLC CE21 Suite CE21, LLC の WordPress 用 CE21 Suite における重要な機能に対する認証の欠如に関する脆弱性 New CWE-288
CWE-306
CVE-2024-10284 2025-01-30 11:14 2024-11-9 Show GitHub Exploit DB Packet Storm
156 7.3 重要
Network
WordPress Download Manager download manager wpdownloadmanager の WordPress 用 download manager におけるコードインジェクションの脆弱性 New CWE-94
コード・インジェクション
CVE-2024-11740 2025-01-30 11:14 2024-12-19 Show GitHub Exploit DB Packet Storm
157 6.5 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack におけるパストラバーサルの脆弱性 New CWE-22
CWE-22
CWE-502
CVE-2024-33568 2025-01-30 11:14 2024-06-4 Show GitHub Exploit DB Packet Storm
158 5.5 警告
Local
xpdfreader project xpdf Glyph & Cog, LLC の Xpdf における境界外書き込みに関する脆弱性 New CWE-787
CWE-787
CVE-2024-4141 2025-01-30 11:14 2024-04-24 Show GitHub Exploit DB Packet Storm
159 6.5 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack における信頼できない制御領域からの機能の組み込みに関する脆弱性 New CWE-829
CWE-98
CVE-2024-4359 2025-01-30 11:14 2024-08-12 Show GitHub Exploit DB Packet Storm
160 5.4 警告
Network
POSIMYTH The Plus Addons for Elementor Page Builder POSIMYTH の WordPress 用 The Plus Addons for Elementor Page Builder におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4485 2025-01-30 11:14 2024-05-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 31, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280201 - ibm aix Buffer overflow in ftpd in IBM AIX 4.3 and 5.1 allows attackers to gain privileges. NVD-CWE-Other
CVE-2001-1557 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280202 - snort snort Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash). NVD-CWE-Other
CVE-2001-1558 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280203 - john_bovey
debian
xvt
debian_linux
Buffer overflow in Xvt 2.1 in Debian Linux 2.2 allows local users to execute arbitrary code via long (1) -name and (2) -T arguments. NVD-CWE-Other
CVE-2001-1561 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280204 - apple mac_os_x Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via… NVD-CWE-Other
CVE-2001-1565 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280205 - vanessa
verge
vanessa_logger
perdition
Format string vulnerability in libvanessa_logger 0.0.1 in Perdition 0.1.8 allows remote attackers to execute arbitrary code via format string specifiers in the __vanessa_logger_log function. NVD-CWE-Other
CVE-2001-1566 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280206 - cmg wap_gateway CMG WAP gateway does not verify the fully qualified domain name URL with X.509 certificates from root certificate authorities, which allows remote attackers to spoof SSL certificates via a man-in-the… NVD-CWE-Other
CVE-2001-1568 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280207 - cmg openwave_wap_gateway Openwave WAP gateway does not verify the fully qualified domain name URL with X.509 certificates from root certificate authorities, which allows remote attackers to spoof SSL certificates via a man-i… NVD-CWE-Other
CVE-2001-1569 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280208 - microsoft windows_xp Windows XP with fast user switching and account lockout enabled allows local users to deny user account access by setting the fast user switch to the same user (self) multiple times, which causes oth… NVD-CWE-Other
CVE-2001-1570 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280209 - microsoft windows_xp The Remote Desktop client in Windows XP sends the most recent user account name in cleartext, which could allow remote attackers to obtain terminal server user account names via sniffing. NVD-CWE-Other
CVE-2001-1571 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm
280210 - linux linux_kernel The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets. NVD-CWE-Other
CVE-2001-1572 2008-09-6 05:26 2001-12-31 Show GitHub Exploit DB Packet Storm