![]() |
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 3, 2025, 1:14 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1601 | 5.3 |
警告
Network NetApp |
日本電気 ISC, Inc.
Active IQ Unified Manager |
ESMPRO/ServerAgent NEC Multimedia OLAP for 映像分析サービス BIND
ISC, Inc. の BIND 等複数ベンダの製品における脆弱性
|
CWE-noinfo
|
情報不足
CVE-2023-5680
|
2025-01-17 13:18 |
2023-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1602 | 7.5 |
重要
Network 日本電気 |
Fedora Project NetApp ISC, Inc.
ESMPRO/ServerAgent |
NEC Multimedia OLAP for 映像分析サービス Active IQ Unified Manager Fedora BIND
NetApp の Active IQ Unified Manager 等複数ベンダの製品における脆弱性
|
CWE-noinfo
|
情報不足
CVE-2023-5679
|
2025-01-17 13:13 |
2023-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1603 | 7.5 |
重要
Network 日本電気 |
Fedora Project NetApp ISC, Inc.
ESMPRO/ServerAgent |
NEC Multimedia OLAP for 映像分析サービス Active IQ Unified Manager Fedora BIND
NetApp の Active IQ Unified Manager 等複数ベンダの製品における到達可能なアサーションに関する脆弱性
|
CWE-617 |
CWE-617
CVE-2023-5517
|
2025-01-17 13:12 |
2023-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1604 | 7.5 |
重要
Network Fedora Project |
日本電気 ISC, Inc.
NEC Multimedia OLAP for 映像分析サービス |
Fedora ESMPRO/ServerAgent BIND
NetApp の ONTAP (旧 Clustered Data ONTAP) 等複数ベンダの製品における脆弱性
|
CWE-noinfo
|
情報不足
CVE-2023-4408
|
2025-01-17 13:10 |
2023-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1605 | 9.8 |
緊急
Network Apache Software Foundation |
Apache Struts
|
Apache Struts 2 における外部からアクセス可能なファイルの脆弱性 (S2-066)
|
CWE-552
|
外部からアクセス可能なファイルまたはディレクトリ
CVE-2023-50164
|
2025-01-17 12:58 |
2023-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1606 | 9.8 |
緊急
Network Apache Software Foundation |
hertzbeat
|
Apache Software Foundation の hertzbeat におけるインジェクションに関する脆弱性
|
CWE-74 |
CWE-74
CVE-2023-51388
|
2025-01-17 12:08 |
2023-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1607 | 9.8 |
緊急
Network Ivanti |
Avalanche
|
Ivanti の Avalanche におけるパストラバーサルの脆弱性
|
CWE-22 |
CWE-22 CWE-288
CVE-2024-13179
|
2025-01-17 12:08 |
2025-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1608 | 5.4 |
警告
Network |
Themeisle | Orbit Fox | ThemeIsle の WordPress 用 Orbit Fox におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2024-13183 | 2025-01-17 12:08 | 2025-01-10 | Show | GitHub Exploit DB Packet Storm |
1609 | 4.3 |
警告
Network |
Progress Software Corporation | MOVEit Transfer | Progress Software Corporation の MOVEit Transfer における脆弱性 |
CWE-778 CWE-Other |
CVE-2024-2291 | 2025-01-17 12:08 | 2024-03-20 | Show | GitHub Exploit DB Packet Storm |
1610 | 4.8 |
警告
Network |
MantisBT Group | MantisBT | MantisBT Group の MantisBT におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 |
CVE-2024-34081 | 2025-01-17 12:08 | 2024-05-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 25, 2025, 4:06 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
921 | - | - | - | There is a defect in the CPython standard library module “mimetypes” where on Windows the default list of known file locations are writable meaning other users can create invalid files to cause Memor… | - | CVE-2024-3220 | 2025-02-15 04:15 | 2025-02-15 | Show | GitHub Exploit DB Packet Storm | |
922 | - | - | - | Mattermost versions 9.11.x <= 9.11.6 fail to filter out DMs from the deleted channels endpoint which allows an attacker to infer user IDs and other metadata from deleted DMs if someone had manually m… | - | CVE-2025-0503 | 2025-02-15 03:15 | 2025-02-15 | Show | GitHub Exploit DB Packet Storm | |
923 | - | - | - | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-48022. Reason: This candidate is a duplicate of CVE-2023-48022. Notes: All CVE users should reference CVE-2023-48022 instead of… | - | CVE-2024-57000 | 2025-02-15 03:15 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm | |
924 | 6.5 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10_1809 windows_10_1507 windows_10_1607 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_24h2 windows_server_2016<… |
NTLM Hash Disclosure Spoofing Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21377 | 2025-02-15 02:40 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
925 | 7.1 |
HIGH
Adjacent |
microsoft |
windows_server_2025 windows_11_24h2 |
DHCP Client Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21379 | 2025-02-15 02:39 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
926 | 7.8 |
HIGH
Local |
microsoft |
365_apps office |
Microsoft Office Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21397 | 2025-02-15 02:38 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
927 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10_1809 windows_10_1507 windows_10_1607 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2 w… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21406 | 2025-02-15 02:37 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
928 | 8.0 |
HIGH
Network |
microsoft | sharepoint_server | Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21400 | 2025-02-15 02:37 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
929 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_1507 windows_10_1607 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2<… |
Windows Disk Cleanup Tool Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21420 | 2025-02-15 02:36 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |
930 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10_1809 windows_11_23h2 windows_11_22h2 windows_10_1507 windows_10_1607 windows_10_22h2 windows_server_2022 windows_server_2… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21407 | 2025-02-15 02:36 | 2025-02-12 | Show | GitHub Exploit DB Packet Storm |