Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1741 4.8 警告
Network
code-projects Local Storage Todo App code-projects の Local Storage Todo App におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CWE-94
CVE-2025-0228 2025-01-16 16:02 2025-01-5 Show GitHub Exploit DB Packet Storm
1742 6.1 警告
Network
FreeScout FreeScout FreeScout におけるクロスサイトスクリプティングの脆弱性 CWE-74
CWE-79
CVE-2024-34697 2025-01-16 15:49 2024-05-14 Show GitHub Exploit DB Packet Storm
1743 6.3 警告
Network
FreeScout FreeScout FreeScout におけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
CWE-1321
CVE-2024-34698 2025-01-16 15:49 2024-05-14 Show GitHub Exploit DB Packet Storm
1744 4.3 警告
Network
Themeum Tutor LMS Themeum の WordPress 用 Tutor LMS における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-1502 2025-01-16 15:49 2024-03-21 Show GitHub Exploit DB Packet Storm
1745 4.3 警告
Network
DesDev Inc. DedeCMS DesDev Inc. の DedeCMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-2823 2025-01-16 15:49 2024-03-22 Show GitHub Exploit DB Packet Storm
1746 4.3 警告
Network
DesDev Inc. DedeCMS DesDev Inc. の DedeCMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-3144 2025-01-16 15:48 2024-04-2 Show GitHub Exploit DB Packet Storm
1747 6.5 警告
Network
Themeum Tutor LMS Themeum の WordPress 用 Tutor LMS における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-3553 2025-01-16 15:48 2024-05-2 Show GitHub Exploit DB Packet Storm
1748 9 緊急
Network
FreeScout FreeScout FreeScout における OS コマンドインジェクションの脆弱性 CWE-78
CWE-78
CVE-2024-29185 2025-01-16 15:48 2024-03-22 Show GitHub Exploit DB Packet Storm
1749 7.8 重要
Local
クアルコム Snapdragon 8cx Compute Platform ファームウェア
snapdragon 8cx gen 3 ファームウェア
QCA6391 ファームウェア
fastconnect 6900 ファームウェア
Snapdragon 8cx&nb…
複数のクアルコム製品における境界外書き込みに関する脆弱性 CWE-120
CWE-787
CVE-2023-43540 2025-01-16 15:46 2023-09-19 Show GitHub Exploit DB Packet Storm
1750 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2021-47554 2025-01-16 15:46 2021-11-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278631 - caldera openlinux The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system. NVD-CWE-Other
CVE-2000-0192 2008-09-11 04:03 2000-03-5 Show GitHub Exploit DB Packet Storm
278632 - corel linux buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters. NVD-CWE-Other
CVE-2000-0194 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
278633 - corel linux setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file. NVD-CWE-Other
CVE-2000-0195 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
278634 - nmh
redhat
turbolinux
nmh
linux
turbolinux
Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME headers in an email message. NVD-CWE-Other
CVE-2000-0196 2008-09-11 04:03 2000-02-28 Show GitHub Exploit DB Packet Storm
278635 - microsoft windows_nt The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file … NVD-CWE-Other
CVE-2000-0197 2008-09-11 04:03 2000-02-14 Show GitHub Exploit DB Packet Storm
278636 - atrium_software mercur_imap4_server
mercur_mailserver
mercur_pop3_server
Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service. NVD-CWE-Other
CVE-2000-0198 2008-09-11 04:03 2000-03-15 Show GitHub Exploit DB Packet Storm
278637 - microsoft sql_server When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the "Always prompt for login name and password" option is not set, then the Enterprise Manager uses weak enc… NVD-CWE-Other
CVE-2000-0199 2008-09-11 04:03 2000-03-14 Show GitHub Exploit DB Packet Storm
278638 - oracle oracle8i The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges. NVD-CWE-Other
CVE-2000-0206 2008-09-11 04:03 2000-03-5 Show GitHub Exploit DB Packet Storm
278639 - sgi infosearch
irix
SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters. NVD-CWE-Other
CVE-2000-0207 2008-09-11 04:03 2000-03-1 Show GitHub Exploit DB Packet Storm
278640 - htdig htdig The htdig (ht://Dig) CGI program htsearch allows remote attackers to read arbitrary files by enclosing the file name with backticks (`) in parameters to htsearch. NVD-CWE-Other
CVE-2000-0208 2008-09-11 04:03 2000-02-29 Show GitHub Exploit DB Packet Storm