Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187291 9.3 危険 アップル - Apple QuickTime の ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-3754 2012-11-13 10:48 2012-11-7 Show GitHub Exploit DB Packet Storm
187292 9.3 危険 アップル - Apple QuickTime のプラグインにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3753 2012-11-13 10:44 2012-11-7 Show GitHub Exploit DB Packet Storm
187293 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3752 2012-11-13 10:41 2012-11-7 Show GitHub Exploit DB Packet Storm
187294 9.3 危険 アップル - Apple QuickTime における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-3751 2012-11-13 10:36 2012-11-7 Show GitHub Exploit DB Packet Storm
187295 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-1374 2012-11-13 10:34 2012-11-7 Show GitHub Exploit DB Packet Storm
187296 10 危険 アップル
Google
- 複数の製品で使用される Webkit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-1521 2012-11-13 10:30 2012-04-30 Show GitHub Exploit DB Packet Storm
187297 1.9 注意 AccountsService - AccountsService の /usr/libexec/accounts-daemon における任意のファイルを読まれる脆弱性 CWE-362
競合状態
CVE-2012-2737 2012-11-13 10:27 2012-06-19 Show GitHub Exploit DB Packet Storm
187298 6.8 警告 Artifex Software
International Color Consortium (ICC)
Argyll CMS
- International Color Consortium Format library における整数アンダーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-4405 2012-11-13 10:25 2012-09-18 Show GitHub Exploit DB Packet Storm
187299 4.9 警告 Linux - Linux Kernel のブロックデバイスの I/O 実装におけるサービス運用妨害 (I/O 不安定) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0879 2012-11-9 18:21 2012-05-17 Show GitHub Exploit DB Packet Storm
187300 6.9 警告 GTK+
Spice Project
- libgio における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4425 2012-11-9 18:13 2012-09-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
581 - - - Uncontrolled search path for some EPCT software before version 1.42.8.0 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-427
 Uncontrolled Search Path Element
CVE-2024-39813 2025-02-19 03:15 2025-02-13 Show GitHub Exploit DB Packet Storm
582 - - - Uncontrolled search path for the FPGA Support Package for the Intel(R) oneAPI DPC++/C++ Compiler software for Windows before version 2024.2 may allow an authenticated user to potentially enable escal… CWE-427
 Uncontrolled Search Path Element
CVE-2024-39365 2025-02-19 03:15 2025-02-13 Show GitHub Exploit DB Packet Storm
583 - - - NULL pointer dereference in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticated user to potentially enable denial of service v… CWE-476
 NULL Pointer Dereference
CVE-2024-39356 2025-02-19 03:15 2025-02-13 Show GitHub Exploit DB Packet Storm
584 - - - Sequence of processor instructions leads to unexpected behavior in the Intel(R) DSA V1.0 for some Intel(R) Xeon(R) Processors may allow an authenticated user to potentially enable denial of service v… CWE-1281
CVE-2024-37020 2025-02-19 03:15 2025-02-13 Show GitHub Exploit DB Packet Storm
585 - - - Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. CWE-20
 Improper Input Validation 
CVE-2024-28047 2025-02-19 03:15 2025-02-13 Show GitHub Exploit DB Packet Storm
586 - - - A CWE-306 "Missing Authentication for Critical Function" in maxprofile/menu/routes.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to edit user gr… CWE-306
Missing Authentication for Critical Function
CVE-2025-26345 2025-02-19 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
587 - - - A CWE-306 "Missing Authentication for Critical Function" in maxprofile/guest-mode/routes.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to enable… CWE-306
Missing Authentication for Critical Function
CVE-2025-26344 2025-02-19 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
588 - - - A vulnerability has been found in code-projects Real Estate Property Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /_parse/l… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1197 2025-02-19 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
589 - - - The Rise Blocks – A Complete Gutenberg Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the titleTag parameter in all versions up to, and including, 3.6 due to insuf… CWE-79
Cross-site Scripting
CVE-2025-0506 2025-02-19 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm
590 - - - The LTL Freight Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' and 'edit_id' parameter in all versions up to, and including, 5.0.20 … CWE-89
SQL Injection
CVE-2024-13473 2025-02-19 03:15 2025-02-12 Show GitHub Exploit DB Packet Storm