Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1851 6.8 警告
Physics
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2019
Microsoft Windows 11
Microsoft Windows Server 2025
Microsoft Window…
Windows モバイル ブロードバンド ドライバーの特権昇格の脆弱性 CWE-125
CWE-190
CWE-noinfo
CVE-2024-49078 2025-01-16 12:04 2024-12-10 Show GitHub Exploit DB Packet Storm
1852 7 重要
Local
The Dimensional Gate Co. Linux Ratfor Linux Ratfor におけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2024-55577 2025-01-16 11:55 2025-01-15 Show GitHub Exploit DB Packet Storm
1853 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. fh1205 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の fh1205 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-3007 2025-01-16 11:44 2024-03-27 Show GitHub Exploit DB Packet Storm
1854 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. W15E ファームウェア Shenzhen Tenda Technology Co.,Ltd. の W15E ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4118 2025-01-16 11:44 2024-04-24 Show GitHub Exploit DB Packet Storm
1855 8.8 重要
Network
ThimPress LearnPress ThimPress の WordPress 用 LearnPress における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2024-4397 2025-01-16 11:44 2024-05-14 Show GitHub Exploit DB Packet Storm
1856 7.5 重要
Network
クアルコム fastconnect 6800 ファームウェア
AR8035 ファームウェア
immersive home 318 ファームウェア
immersive home 216 ファームウェア
fastconnect 6200 ファームウェア
IPQ5010&nb…
複数のクアルコム製品における境界外読み取りに関する脆弱性 CWE-125
CWE-126
CVE-2024-21477 2025-01-16 11:44 2024-05-6 Show GitHub Exploit DB Packet Storm
1857 5.3 警告
Network
Metagauss Inc. eventprime Metagauss Inc. の WordPress 用 eventprime における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-1125 2025-01-16 11:38 2024-03-9 Show GitHub Exploit DB Packet Storm
1858 4.3 警告
Network
Extend Themes colibri page builder Extend Themes の WordPress 用 colibri page builder におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1361 2025-01-16 11:38 2024-02-23 Show GitHub Exploit DB Packet Storm
1859 5.4 警告
Network
Leap13 Premium Addons for Elementor Leap13 の WordPress 用 Premium Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-5553 2025-01-16 11:38 2024-06-12 Show GitHub Exploit DB Packet Storm
1860 4.3 警告
Network
servit affiliate-toolkit servit の WordPress 用 affiliate-toolkit における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-2298 2025-01-16 11:32 2024-03-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279201 - emc rsa_security_sitekey EMC RSA Security SiteKey does not set the secure qualifier on the SiteKey Flash token (aka the PassMark Flash shared object), which might allow remote attackers to obtain the token via HTTP. NVD-CWE-Other
CVE-2006-7201 2008-09-6 06:16 2007-05-1 Show GitHub Exploit DB Packet Storm
279202 - mambo mambo_open_source The dofreePDF function in includes/pdf.php in Mambo 4.6.1 does not properly check access rights for database content, which allows remote attackers to read certain content via unspecified vectors. NVD-CWE-Other
CVE-2006-7202 2008-09-6 06:16 2007-05-10 Show GitHub Exploit DB Packet Storm
279203 - php_group php The array_fill function in ext/standard/array.c in PHP 4.4.2 and 5.1.2 allows context-dependent attackers to cause a denial of service (memory consumption) via a large num value. NVD-CWE-Other
CVE-2006-7205 2008-09-6 06:16 2007-05-24 Show GitHub Exploit DB Packet Storm
279204 - ageet agephone Buffer overflow in ageet AGEphone before 1.4.0 might allow remote attackers to have an unknown impact via unspecified vectors. NVD-CWE-Other
CVE-2006-7207 2008-09-6 06:16 2007-06-23 Show GitHub Exploit DB Packet Storm
279205 - firebirdsql firebird fb_lock_mgr in Firebird 1.5 uses weak permissions (0666) for the semaphore array, which allows local users to cause a denial of service (blocked query processing) by locking semaphores. NVD-CWE-Other
CVE-2006-7211 2008-09-6 06:16 2007-06-30 Show GitHub Exploit DB Packet Storm
279206 - firebirdsql firebird Multiple buffer overflows in Firebird 1.5, one of which affects WNET, have unknown impact and attack vectors. NOTE: this issue might overlap CVE-2006-1240. NVD-CWE-Other
CVE-2006-7212 2008-09-6 06:16 2007-06-30 Show GitHub Exploit DB Packet Storm
279207 - firebirdsql firebird Firebird 1.5 allows remote authenticated users without SYSDBA and owner permissions to overwrite a database by creating a database. NVD-CWE-Other
CVE-2006-7213 2008-09-6 06:16 2007-06-30 Show GitHub Exploit DB Packet Storm
279208 - firebirdsql firebird Multiple unspecified vulnerabilities in Firebird 1.5 allow remote attackers to (1) cause a denial of service (application crash) by sending many remote protocol versions; and (2) cause a denial of se… NVD-CWE-Other
CVE-2006-7214 2008-09-6 06:16 2007-06-30 Show GitHub Exploit DB Packet Storm
279209 - intel core_2_duo_e4000
core_2_duo_e6000
core_2_extreme_x6800
The Intel Core 2 Extreme processor X6800 and Core 2 Duo desktop processor E6000 and E4000 incorrectly set the memory page Access (A) bit for a page in certain circumstances involving proximity of the… NVD-CWE-Other
CVE-2006-7215 2008-09-6 06:16 2007-07-4 Show GitHub Exploit DB Packet Storm
279210 - apache derby Apache Derby before 10.2.1.6 does not determine privilege requirements for lock table statements at compilation time, and consequently does not enforce privilege requirements at execution time, which… NVD-CWE-Other
CVE-2006-7216 2008-09-6 06:16 2007-07-6 Show GitHub Exploit DB Packet Storm