Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1771 4.7 警告
Local
Linux Linux Kernel Linux の Linux Kernel における Time-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2023-52478 2025-01-16 14:48 2023-10-6 Show GitHub Exploit DB Packet Storm
1772 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における二重解放に関する脆弱性 CWE-415
CWE-416
CVE-2023-52851 2025-01-16 14:48 2023-10-31 Show GitHub Exploit DB Packet Storm
1773 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2024-35786 2025-01-16 14:48 2024-03-5 Show GitHub Exploit DB Packet Storm
1774 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2024-36882 2025-01-16 14:48 2024-05-5 Show GitHub Exploit DB Packet Storm
1775 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2024-36924 2025-01-16 14:48 2024-03-10 Show GitHub Exploit DB Packet Storm
1776 7.8 重要
Local
Debian
Linux
Linux Kernel
Debian GNU/Linux
Linux の Linux Kernel 等複数ベンダの製品における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2024-36940 2025-01-16 14:48 2024-03-29 Show GitHub Exploit DB Packet Storm
1777 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2024-56716 2025-01-16 14:48 2024-12-15 Show GitHub Exploit DB Packet Storm
1778 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2024-56717 2025-01-16 14:48 2024-12-15 Show GitHub Exploit DB Packet Storm
1779 9.8 緊急
Network
IDocView IDocView IDocView におけるコマンドインジェクションの脆弱性 CWE-77
CWE-77
CVE-2024-24377 2025-01-16 14:42 2024-02-16 Show GitHub Exploit DB Packet Storm
1780 6.1 警告
Network
WPDeveloper Essential Addons for Elementor WPDeveloper の WordPress 用 Essential Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4448 2025-01-16 14:42 2024-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 12, 2025, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276831 - viewvc viewvc ViewVC before 1.0.5 provides revision metadata without properly checking whether access was intended, which allows remote attackers to obtain sensitive information by reading (1) forbidden pathnames … CWE-200
Information Exposure
CVE-2008-1292 2009-08-20 14:14 2008-03-25 Show GitHub Exploit DB Packet Storm
276832 - shoppingtree candypress_store Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idcust parameter to (a) ajax_getTi… CWE-89
SQL Injection
CVE-2008-0738 2009-08-20 14:13 2008-02-13 Show GitHub Exploit DB Packet Storm
276833 - shoppingtree candypress_store SQL injection vulnerability in admin/SA_shipFedExMeter.asp in CandyPress (CP) 4.1.1.26, and earlier 4.x and 3.x versions, allows remote attackers to execute arbitrary SQL commands via the FedExAccoun… CWE-89
SQL Injection
CVE-2008-0739 2009-08-20 14:13 2008-02-13 Show GitHub Exploit DB Packet Storm
276834 - ibm db2 IBM DB2 8.1 before FP18 allows attackers to obtain unspecified access via a das command. CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2859 2009-08-20 13:00 2009-08-20 Show GitHub Exploit DB Packet Storm
276835 - mybb mybb Multiple cross-site request forgery (CSRF) vulnerabilities in MyBB 1.2.11 and earlier allow remote attackers to (1) hijack the authentication of moderators or administrators for requests that delete … CWE-352
 Origin Validation Error
CVE-2008-0788 2009-08-20 13:00 2008-02-15 Show GitHub Exploit DB Packet Storm
276836 - ibm tklm Unspecified vulnerability in IBM Tivoli Key Lifecycle Manager (TKLM) 1.0 has unknown impact and attack vectors, related to a "password security vulnerability." NVD-CWE-noinfo
CVE-2009-2667 2009-08-19 14:29 2009-08-6 Show GitHub Exploit DB Packet Storm
276837 - apple safari Multiple unspecified vulnerabilities in Safari RSS in Apple Mac OS X 10.4.11 and 10.5.6, and Windows XP and Vista, allow remote attackers to execute arbitrary JavaScript in the local security zone vi… CWE-20
 Improper Input Validation 
CVE-2009-0137 2009-08-19 14:25 2009-02-13 Show GitHub Exploit DB Packet Storm
276838 - dotnetnuke dotnetnuke Unrestricted file upload vulnerability in the file manager module in DotNetNuke before 4.8.2 allows remote administrators to upload arbitrary files and gain privileges to the server via unspecified v… CWE-20
 Improper Input Validation 
CVE-2008-6541 2009-08-19 14:24 2009-03-30 Show GitHub Exploit DB Packet Storm
276839 - thomas_waggershauser air_filemanager Unspecified vulnerability in Frontend Filemanager (air_filemanager) 0.6.1 and earlier extension for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors. NVD-CWE-noinfo
CVE-2008-6685 2009-08-19 14:24 2009-04-11 Show GitHub Exploit DB Packet Storm
276840 - sophos anti-virus
anti-virus7.6.3
Sophos Anti-Virus for Windows before 7.6.3, Anti-Virus for Windows NT/9x before 4.7.18, Anti-Virus for OS X before 4.9.18, Anti-Virus for Linux before 6.4.5, Anti-Virus for UNIX before 7.0.5, Anti-Vi… CWE-399
 Resource Management Errors
CVE-2008-6903 2009-08-19 14:24 2009-08-6 Show GitHub Exploit DB Packet Storm