Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1681 6.5 警告
Network
Synology Inc. Surveillance Station Synology Inc. の Surveillance Station における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-29240 2025-01-16 17:25 2024-03-28 Show GitHub Exploit DB Packet Storm
1682 7.8 重要
Local
クアルコム QCA6584AU ファームウェア
QCA6391 ファームウェア
qamsrv1h ファームウェア
fastconnect 7800 ファームウェア
fastconnect 6900 ファームウェア
flight rb5 5g ファームウェア
QCA6574A…
複数のクアルコム製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-45553 2025-01-16 17:25 2024-09-2 Show GitHub Exploit DB Packet Storm
1683 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2021-47463 2025-01-16 17:25 2021-10-18 Show GitHub Exploit DB Packet Storm
1684 5.9 警告
Network
Huawei HarmonyOS
EMUI
Huawei の EMUI および HarmonyOS における競合状態に関する脆弱性 CWE-362
CWE-362
CVE-2024-56441 2025-01-16 17:25 2024-12-26 Show GitHub Exploit DB Packet Storm
1685 7.5 重要
Network
クアルコム QCA6696 ファームウェア
QCA6584AU ファームウェア
QCA6391 ファームウェア
fastconnect 7800 ファームウェア
fastconnect 6800 ファームウェア
fastconnect 6900 ファームウェア
QCA6574A&nb…
複数のクアルコム製品における脆弱性 CWE-20
CWE-noinfo
CVE-2023-33099 2025-01-16 17:25 2023-05-17 Show GitHub Exploit DB Packet Storm
1686 7.7 重要
Network
Synology Inc. Surveillance Station Synology Inc. の Surveillance Station における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-29229 2025-01-16 17:25 2024-03-28 Show GitHub Exploit DB Packet Storm
1687 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. FH1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の FH1202 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-2980 2025-01-16 17:25 2024-03-27 Show GitHub Exploit DB Packet Storm
1688 7.5 重要
Network
クアルコム immersive home 3210 ファームウェア
ipq5302 ファームウェア
fastconnect 7800 ファームウェア
fastconnect 6900 ファームウェア
IPQ6000 ファームウェア
IPQ6018 ファームウェア
ipq53…
複数のクアルコム製品における境界外読み取りに関する脆弱性 CWE-125
CWE-126
CVE-2024-45558 2025-01-16 17:25 2024-09-2 Show GitHub Exploit DB Packet Storm
1689 7.5 重要
Network
Huawei HarmonyOS Huawei の HarmonyOS における脆弱性 CWE-264
CWE-noinfo
CVE-2024-56444 2025-01-16 17:25 2024-12-26 Show GitHub Exploit DB Packet Storm
1690 5.5 警告
Local
Huawei HarmonyOS Huawei の HarmonyOS における脆弱性 CWE-120
CWE-noinfo
CVE-2024-56454 2025-01-16 17:25 2024-12-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
491 6.4 MEDIUM
Local
- - A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to read the file content, however, it fails to check if… CWE-787
 Out-of-bounds Write
CVE-2025-0677 2025-02-20 04:15 2025-02-20 Show GitHub Exploit DB Packet Storm
492 7.6 HIGH
Adjacent
- - A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer usin… CWE-787
 Out-of-bounds Write
CVE-2025-0624 2025-02-20 04:15 2025-02-20 Show GitHub Exploit DB Packet Storm
493 - - - The OWL Carousel Slider WordPress plugin through 2.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used ag… - CVE-2024-13627 2025-02-20 04:15 2025-02-17 Show GitHub Exploit DB Packet Storm
494 - - - The Track Logins WordPress plugin through 1.0 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks - CVE-2024-13608 2025-02-20 04:15 2025-02-17 Show GitHub Exploit DB Packet Storm
495 8.8 HIGH
Network
- - A command injection flaw was found in the text editor Emacs. It could allow a remote, unauthenticated attacker to execute arbitrary shell commands on a vulnerable system. Exploitation is possible by … - CVE-2025-1244 2025-02-20 04:15 2025-02-13 Show GitHub Exploit DB Packet Storm
496 6.5 MEDIUM
Network
progress telerik_document_processing_libraries In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205), using .NET Standard 2.0, the contents of a file at an arbitrary path can be exported to RTF. CWE-552
 Files or Directories Accessible to External Parties
CVE-2024-11629 2025-02-20 04:09 2025-02-13 Show GitHub Exploit DB Packet Storm
497 5.4 MEDIUM
Network
anisha wazifa_system A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is the function searchuser of the file /search_resualts.php. The manipulation of the argument fir… CWE-79
Cross-site Scripting
CVE-2025-1209 2025-02-20 04:04 2025-02-13 Show GitHub Exploit DB Packet Storm
498 8.8 HIGH
Network
anisha wazifa_system A vulnerability classified as critical was found in code-projects Wazifa System 1.0. Affected by this vulnerability is an unknown functionality of the file /controllers/control.php. The manipulation … CWE-89
SQL Injection
CVE-2025-1210 2025-02-20 04:03 2025-02-13 Show GitHub Exploit DB Packet Storm
499 9.8 CRITICAL
Network
dlink dir-853_firmware D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetDynamicDNSSettings module. CWE-787
 Out-of-bounds Write
CVE-2025-25744 2025-02-20 04:02 2025-02-13 Show GitHub Exploit DB Packet Storm
500 7.2 HIGH
Network
dlink dir-853_firmware D-Link DIR-853 A1 FW1.20B07 was discovered to contain a command injection vulnerability in the SetVirtualServerSettings module. CWE-77
Command Injection
CVE-2025-25743 2025-02-20 04:02 2025-02-13 Show GitHub Exploit DB Packet Storm