Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187561 7.8 危険 Novell - ZENworks Asset Management に情報漏えいの脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-4933 2012-10-23 15:17 2012-10-16 Show GitHub Exploit DB Packet Storm
187562 4.3 警告 The OTR Development Team - libotr におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2012-3461 2012-10-23 14:55 2012-08-20 Show GitHub Exploit DB Packet Storm
187563 7.5 危険 The Icinga Project - Icinga のデータベース作成スクリプトにおける他のデータベースにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3441 2012-10-23 14:19 2012-08-25 Show GitHub Exploit DB Packet Storm
187564 3.3 注意 ISC, Inc. - ISC DHCP におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-3954 2012-10-23 14:13 2012-07-24 Show GitHub Exploit DB Packet Storm
187565 6.1 警告 ISC, Inc. - ISC DHCP におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3571 2012-10-23 14:10 2012-07-24 Show GitHub Exploit DB Packet Storm
187566 4.3 警告 アップル - Safari においてリモートからローカルファイルを読み取り可能な脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3713 2012-10-23 14:00 2012-10-23 Show GitHub Exploit DB Packet Storm
187567 6.4 警告 Curtis Galloway - exif の libjpeg の jpeg-data.c 内の jpeg_data_load_data 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-2845 2012-10-23 13:59 2012-07-12 Show GitHub Exploit DB Packet Storm
187568 5 警告 ISC, Inc. - ISC DHCP の dhcpd におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4539 2012-10-23 13:53 2011-12-7 Show GitHub Exploit DB Packet Storm
187569 8.5 危険 Mutiny Limited - Mutiny にコマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2012-3001 2012-10-23 13:41 2012-10-23 Show GitHub Exploit DB Packet Storm
187570 4.3 警告 The GIMP Team - GIMP の fits-io.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3236 2012-10-23 12:24 2012-07-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 5, 2025, 4:56 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
171 - - - Cross Site Scripting vulnerability in sayski ForestBlog 20241223 allows a remote attacker to escalate privileges via the article editing function. New - CVE-2024-57498 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
172 - - - ChestnutCMS <=1.5.0 has an arbitrary file deletion vulnerability in contentcore.controller.FileController, which allows attackers to delete any file and folder. New - CVE-2024-57452 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
173 - - - Denial of service in DNS-over-QUIC in Technitium DNS Server <= v13.2.2 allows remote attackers to permanently stop the server from accepting new DNS-over-QUIC connections by triggering unhandled exce… New - CVE-2024-56946 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
174 8.8 HIGH
Network
- - The BoomBox Theme Extensions plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.8.0 via the 'boombox_listing' shortcode 'type' attribute. This makes it… New CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2024-12859 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
175 - - - With address book access, SMB/FTP settings could be modified, redirecting scans and possibly capturing credentials. This requires enabled scan functions and printer access. New - CVE-2024-12511 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
176 4.3 MEDIUM
Network
- - The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'eventer_export_bookings_csv' function in all versions up to, and including, 3.9… New CWE-862
 Missing Authorization
CVE-2024-11134 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
177 5.3 MEDIUM
Network
- - The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'handle_pdf_download_request' function in all versions up to, and including, 3.9… New CWE-862
 Missing Authorization
CVE-2024-11133 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
178 6.4 MEDIUM
Network
- - The Eventer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.9.9 due to insufficient input sanitization and output escaping on user… New CWE-79
Cross-site Scripting
CVE-2024-11132 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
179 - - - If LDAP settings are accessed, authentication could be redirected to another server, potentially exposing credentials. This requires admin access and an active LDAP setup. New - CVE-2024-12510 2025-02-4 05:15 2025-02-4 Show GitHub Exploit DB Packet Storm
180 - - - A heap buffer overflow in the XML Text Escaping component of Qualisys C++ SDK commit a32a21a allows attackers to cause Denial of Service (DoS) via escaping special XML characters. Update - CVE-2024-53319 2025-02-4 05:15 2025-02-1 Show GitHub Exploit DB Packet Storm