Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
186831 2.6 注意 コルネ株式会社 - Welcart におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-5178 2012-12-14 12:02 2012-12-14 Show GitHub Exploit DB Packet Storm
186832 5 警告 コルネ株式会社 - Welcart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5177 2012-12-14 12:02 2012-12-14 Show GitHub Exploit DB Packet Storm
186833 4.3 警告 Zoho Corporation - ManageEngine AssetExplorer にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5956 2012-12-13 18:21 2012-12-7 Show GitHub Exploit DB Packet Storm
186834 5 警告 Layton Technology - Layton Helpbox におけるログインページの平文の認証情報を漏えいする脆弱性 CWE-310
暗号の問題
CVE-2012-4977 2012-12-13 15:30 2012-12-12 Show GitHub Exploit DB Packet Storm
186835 5 警告 Layton Technology - Layton Helpbox における ODBC データベースの認証情報を漏えいする脆弱性 CWE-200
情報漏えい
CVE-2012-4976 2012-12-13 15:29 2012-12-12 Show GitHub Exploit DB Packet Storm
186836 4 警告 Layton Technology - Layton Helpbox における任意のサポートチケットのデータを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4975 2012-12-13 15:26 2012-12-12 Show GitHub Exploit DB Packet Storm
186837 6.5 警告 Layton Technology - Layton Helpbox における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4974 2012-12-13 15:25 2012-12-12 Show GitHub Exploit DB Packet Storm
186838 4.3 警告 Layton Technology - Layton Helpbox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4972 2012-12-13 15:25 2012-12-12 Show GitHub Exploit DB Packet Storm
186839 9.4 危険 Layton Technology - Layton Helpbox における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4971 2012-12-13 15:23 2012-12-12 Show GitHub Exploit DB Packet Storm
186840 10 危険 Google - Google Chrome におけるサービス運用妨害 (スタックメモリ破損) の脆弱性 CWE-119
バッファエラー
CVE-2012-5144 2012-12-13 15:21 2012-12-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251 - - - Mattermost versions 9.11.x <= 9.11.6, 10.4.x <= 10.4.1 fail to invalidate all active sessions when converting a user to a bot, with allows the converted user to escalate their privileges depending on… New - CVE-2025-1412 2025-02-24 17:15 2025-02-24 Show GitHub Exploit DB Packet Storm
252 6.1 MEDIUM
Physics
- - The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further used to reallocate the line buffer to accept the ne… New CWE-787
 Out-of-bounds Write
CVE-2025-0690 2025-02-24 17:15 2025-02-24 Show GitHub Exploit DB Packet Storm
253 3.5 LOW
Adjacent
- - A vulnerability was found in Excitel Broadband Private my Excitel App 3.13.0 on Android. It has been classified as problematic. Affected is an unknown function of the component One-Time Password Hand… New CWE-307
CWE-799
mproper Restriction of Excessive Authentication Attempts
 Improper Control of Interaction Frequency
CVE-2025-1629 2025-02-24 14:15 2025-02-24 Show GitHub Exploit DB Packet Storm
254 4.3 MEDIUM
Network
- - A vulnerability has been found in vTiger CRM 6.4.0 and classified as problematic. This vulnerability affects unknown code of the file /modules/Mobile/index.php. The manipulation of the argument _oper… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1618 2025-02-24 14:15 2025-02-24 Show GitHub Exploit DB Packet Storm
255 2.4 LOW
Network
- - A vulnerability, which was classified as problematic, was found in Netis WF2780 2.1.41925. This affects an unknown part of the component Wireless 2.4G Menu. The manipulation of the argument SSID lead… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1617 2025-02-24 13:15 2025-02-24 Show GitHub Exploit DB Packet Storm
256 4.7 MEDIUM
Network
- - A vulnerability, which was classified as critical, has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected by this issue is some unknown functionality of the component Diagnosis. The manipul… New CWE-78
CWE-77
OS Command 
Command Injection
CVE-2025-1616 2025-02-24 13:15 2025-02-24 Show GitHub Exploit DB Packet Storm
257 2.4 LOW
Network
- - A vulnerability classified as problematic was found in FiberHome AN5506-01A ONU GPON RP2511. Affected by this vulnerability is an unknown functionality of the component NAT Submenu. The manipulation … New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1615 2025-02-24 13:15 2025-02-24 Show GitHub Exploit DB Packet Storm
258 2.4 LOW
Network
- - A vulnerability classified as problematic has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected is an unknown function of the file /goform/portForwardingCfg of the component Port Forwardin… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1614 2025-02-24 12:15 2025-02-24 Show GitHub Exploit DB Packet Storm
259 2.4 LOW
Network
- - A vulnerability was found in FiberHome AN5506-01A ONU GPON RP2511. It has been rated as problematic. This issue affects some unknown processing of the file /goform/URL_filterCfg of the component URL … New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1613 2025-02-24 12:15 2025-02-24 Show GitHub Exploit DB Packet Storm
260 3.5 LOW
Network
- - A vulnerability was found in Edimax BR-6288ACL 1.30. It has been declared as problematic. This vulnerability affects unknown code of the file wireless5g_basic.asp. The manipulation of the argument SS… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1612 2025-02-24 12:15 2025-02-24 Show GitHub Exploit DB Packet Storm