Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187251 2.9 注意 Quagga
インターネットイニシアティブ
- Quagga にサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2012-1820 2012-11-13 18:07 2012-06-5 Show GitHub Exploit DB Packet Storm
187252 7.2 危険 Google - Windows 上で稼働する Google Chrome における権限を取得される脆弱性 CWE-16
CWE-DesignError
CVE-2011-3098 2012-11-13 18:02 2012-05-15 Show GitHub Exploit DB Packet Storm
187253 7.5 危険 Google - Google Chrome におけるサンドボックスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-3084 2012-11-13 18:01 2012-05-15 Show GitHub Exploit DB Packet Storm
187254 7.2 危険 CA Technologies - CA License における任意のファイルを変更または作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0692 2012-11-13 17:51 2012-10-1 Show GitHub Exploit DB Packet Storm
187255 7.2 危険 CA Technologies - CA License における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0691 2012-11-13 17:49 2012-10-1 Show GitHub Exploit DB Packet Storm
187256 5 警告 Quagga
インターネットイニシアティブ
- Quagga の bgpd の BGP 実装におけるサービス運用妨害 (表明違反および Daemon Exit) の脆弱性 CWE-119
バッファエラー
CVE-2012-0255 2012-11-13 17:47 2012-03-27 Show GitHub Exploit DB Packet Storm
187257 3.3 注意 Quagga
インターネットイニシアティブ
- Quagga の ospf_ls_upd_list_lsa 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0249 2012-11-13 17:46 2012-03-27 Show GitHub Exploit DB Packet Storm
187258 5 警告 OpenSSL Project - OpenSSL の crypto/asn1/asn_mime.c にある mime_param_cmp 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-1165 2012-11-13 17:38 2012-03-15 Show GitHub Exploit DB Packet Storm
187259 5 警告 The Perl Foundation - Perl 用 DBD::Pg モジュールの dbdimp.c におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2012-1151 2012-11-13 17:36 2012-03-9 Show GitHub Exploit DB Packet Storm
187260 9.3 危険 MIT Kerberos - MIT Kerberos の KDC におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-1015 2012-11-13 17:33 2012-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 11, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
261 - - - An information disclosure vulnerability exists in the Vault API functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to reading vaults that have been prev… - CVE-2024-43779 2025-02-7 04:15 2025-02-7 Show GitHub Exploit DB Packet Storm
262 - - - A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an arbitrary html code. An… - CVE-2024-39272 2025-02-7 04:15 2025-02-7 Show GitHub Exploit DB Packet Storm
263 - - - MDC is a tool to take regular Markdown and write documents interacting deeply with a Vue component. In affected versions unsafe parsing logic of the URL from markdown can lead to arbitrary JavaScript… CWE-79
Cross-site Scripting
CVE-2025-24981 2025-02-7 03:15 2025-02-7 Show GitHub Exploit DB Packet Storm
264 - - - mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is a web-based interface for mitmproxy. In mitmweb 11.1.1 and below, a malic… CWE-441
CWE-288
Confused Deputy
Authentication Bypass Using an Alternate Path or Channel
CVE-2025-23217 2025-02-7 03:15 2025-02-7 Show GitHub Exploit DB Packet Storm
265 - - - A SQL injection vulnerability in timeoutWarning.asp in Advantive VeraCore through 2025.1.0 allows remote attackers to execute arbitrary SQL commands via the PmSess1 parameter. - CVE-2025-25181 2025-02-7 03:15 2025-02-4 Show GitHub Exploit DB Packet Storm
266 - - - Advantive VeraCore before 2024.4.2.1 allows remote authenticated users to upload files to unintended folders (e.g., ones that are accessible during web browsing by other users). upload.aspx can be us… - CVE-2024-57968 2025-02-7 03:15 2025-02-4 Show GitHub Exploit DB Packet Storm
267 - - - Due to the usage of a variable time instruction in the assembly implementation of an internal function, a small number of bits of secret scalars are leaked on the ppc64le architecture. Due to the way… - CVE-2025-22866 2025-02-7 02:15 2025-02-7 Show GitHub Exploit DB Packet Storm
268 5.3 MEDIUM
Local
- - A vulnerability has been found in AppHouseKitchen AlDente Charge Limiter up to 1.29 on macOS and classified as critical. This vulnerability affects the function shouldAcceptNewConnection of the file … CWE-285
CWE-266
Improper Authorization
 Incorrect Privilege Assignment
CVE-2025-1078 2025-02-7 02:15 2025-02-7 Show GitHub Exploit DB Packet Storm
269 - - - PHPJabbers Cinema Booking System v2.0 is vulnerable to reflected cross-site scripting (XSS). Multiple endpoints improperly handle user input, allowing malicious scripts to execute in a victim’s brows… - CVE-2024-57427 2025-02-7 02:15 2025-02-7 Show GitHub Exploit DB Packet Storm
270 - - - Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Light Agent, Kaspersky Endpoint Security for Windows, Kaspersky Small Office Securi… - CVE-2024-13614 2025-02-7 02:15 2025-02-7 Show GitHub Exploit DB Packet Storm