Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 18, 2024, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188361 4.3 警告 The phpMyAdmin Project - phpMyAdmin の show_config_errors.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1902 2012-09-4 17:18 2012-03-28 Show GitHub Exploit DB Packet Storm
188362 3.6 注意 オラクル - Oracle Virtualization の Oracle VM VirtualBox コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0111 2012-09-4 10:01 2012-01-17 Show GitHub Exploit DB Packet Storm
188363 3.7 注意 オラクル - Oracle Virtualization の Oracle VM VirtualBox コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0105 2012-09-4 09:59 2012-01-17 Show GitHub Exploit DB Packet Storm
188364 10 危険 ブルーコートシステムズ - Windows 上で稼働する Blue Coat Reporter におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-5127 2012-09-3 19:04 2011-09-6 Show GitHub Exploit DB Packet Storm
188365 5 警告 ブルーコートシステムズ - Blue Coat ProxySG における重要な認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-5126 2012-09-3 19:02 2011-06-16 Show GitHub Exploit DB Packet Storm
188366 4.3 警告 ブルーコートシステムズ - Blue Coat Director におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5125 2012-09-3 18:52 2011-09-8 Show GitHub Exploit DB Packet Storm
188367 10 危険 ブルーコートシステムズ - Blue Coat で使用される BCAAA コンポーネントにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-5124 2012-09-3 18:38 2011-04-4 Show GitHub Exploit DB Packet Storm
188368 4.3 警告 ブルーコートシステムズ - Blue Coat ProxySG の Java 管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5192 2012-09-3 18:15 2010-09-29 Show GitHub Exploit DB Packet Storm
188369 9.3 危険 ブルーコートシステムズ - Blue Coat ProxyAV アプライアンスにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-5191 2012-09-3 18:13 2010-06-19 Show GitHub Exploit DB Packet Storm
188370 5 警告 ブルーコートシステムズ - Blue Coat ProxySG のアクティブコンテンツの変換機能における JavaScript の検出を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5190 2012-09-3 18:12 2010-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 18, 2024, 12:12 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
71 6.3 MEDIUM
Network
- - The The Drop Shadow Boxes plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.7.14. This is due to the software allowing users to execute an ac… New CWE-94
Code Injection
CVE-2024-10262 2024-11-16 13:15 2024-11-16 Show GitHub Exploit DB Packet Storm
72 - - - The Steel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's btn shortcode in all versions up to, and including, 1.3.0 due to insufficient input sanitization and outpu… New CWE-79
Cross-site Scripting
CVE-2024-10147 2024-11-16 13:15 2024-11-16 Show GitHub Exploit DB Packet Storm
73 6.4 MEDIUM
Network
- - The PJW Mime Config plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0 due to insufficient input sanitization and output … New CWE-79
Cross-site Scripting
CVE-2024-10017 2024-11-16 13:15 2024-11-16 Show GitHub Exploit DB Packet Storm
74 6.4 MEDIUM
Network
- - The ConvertCalculator for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' and 'type' parameters in all versions up to, and including, 1.1.1 due to insufficien… New CWE-79
Cross-site Scripting
CVE-2024-10015 2024-11-16 13:15 2024-11-16 Show GitHub Exploit DB Packet Storm
75 5.3 MEDIUM
Network
- - The Popup Box – Create Countdown, Coupon, Video, Contact Form Popups plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the deactivate_plugin… New CWE-862
 Missing Authorization
CVE-2024-10861 2024-11-16 12:15 2024-11-16 Show GitHub Exploit DB Packet Storm
76 4.3 MEDIUM
Network
- - The Popularis Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.7 via the 'elementor-template' shortcode due to insufficient restrictions on w… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-10795 2024-11-16 12:15 2024-11-16 Show GitHub Exploit DB Packet Storm
77 4.3 MEDIUM
Network
- - The Simple Local Avatars plugin for WordPress is vulnerable to unauthorized modification of datadue to a missing capability check on the sla_clear_user_cache function in all versions up to, and inclu… New CWE-862
 Missing Authorization
CVE-2024-10786 2024-11-16 12:15 2024-11-16 Show GitHub Exploit DB Packet Storm
78 5.5 MEDIUM
Local
adobe indesign InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerabi… Update CWE-125
Out-of-bounds Read
CVE-2024-49510 2024-11-16 09:35 2024-11-13 Show GitHub Exploit DB Packet Storm
79 7.8 HIGH
Local
adobe indesign InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exp… Update CWE-787
 Out-of-bounds Write
CVE-2024-49509 2024-11-16 09:35 2024-11-13 Show GitHub Exploit DB Packet Storm
80 5.5 MEDIUM
Local
adobe indesign InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerabi… Update CWE-125
Out-of-bounds Read
CVE-2024-49512 2024-11-16 09:34 2024-11-13 Show GitHub Exploit DB Packet Storm