Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188401 7.5 危険 imagetraders - Iceberg CMS の details.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2016 2012-09-25 17:38 2010-05-24 Show GitHub Exploit DB Packet Storm
188402 4 警告 マイクロソフト - Microsoft Dynamics GP における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2010-2011 2012-09-25 17:38 2010-05-21 Show GitHub Exploit DB Packet Storm
188403 3.5 注意 MySQL AB - MySQL におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2008 2012-09-25 17:38 2010-06-2 Show GitHub Exploit DB Packet Storm
188404 6.8 警告 LetoDMS project - LetoDMS (前 MyDMS) におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2007 2012-09-25 17:38 2010-05-20 Show GitHub Exploit DB Packet Storm
188405 6.5 警告 LetoDMS project - LetoDMS (前 MyDMS) の op/op.Login.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2006 2012-09-25 17:38 2010-05-20 Show GitHub Exploit DB Packet Storm
188406 2.6 注意 ninjitsuweb - Drupal 用の CiviRegister モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2001 2012-09-25 17:38 2010-05-12 Show GitHub Exploit DB Packet Storm
188407 6.8 警告 openmairie - OpenMairie Opencatalogue の scr/soustab.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1999 2012-09-25 17:38 2010-05-20 Show GitHub Exploit DB Packet Storm
188408 2.1 注意 kevinhankens - Drupal 用の CCK TableField モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1998 2012-09-25 17:38 2010-05-5 Show GitHub Exploit DB Packet Storm
188409 5 警告 マイクロソフト - Microsoft Internet Explorer 6 などにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1991 2012-09-25 17:38 2010-05-20 Show GitHub Exploit DB Packet Storm
188410 5 警告 Mozilla Foundation - Mozilla Firefox および SeaMonkey におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1990 2012-09-25 17:38 2010-05-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
551 - - - Dell Recover Point for Virtual Machines 6.0.X contains a Weak file system permission vulnerability. A low privileged Local attacker could potentially exploit this vulnerability, leading to impacting … CWE-276
Incorrect Default Permissions 
CVE-2025-21106 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
552 - - - Dell RecoverPoint for Virtual Machines 6.0.X contains a command execution vulnerability. A Low privileged malicious user with local access could potentially exploit this vulnerability by running the … CWE-284
Improper Access Control
CVE-2025-21105 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
553 6.4 MEDIUM
Network
- - The Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.7.5 via the 'embeddoc' s… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-1043 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
554 - - - A vulnerability, that could result in Remote Code Execution (RCE), has been found in DocsGPT. Due to improper parsing of JSON data using eval() an unauthorized attacker could send arbitrary Python co… - CVE-2025-0868 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
555 7.1 HIGH
Network
- - IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expo… CWE-611
XXE
CVE-2024-49781 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
556 4.3 MEDIUM
Network
- - IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages could allow a remote attacker to bypass security restrictions, caused by improper validation and management of authentication cookies. By modifyi… CWE-352
 Origin Validation Error
CVE-2024-49779 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
557 4.3 MEDIUM
Network
- - IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages with Watson Assistant chat feature enabled the application establishes a session when a user logs in and uses chat, but the chat session is sti… CWE-384
 Session Fixation
CVE-2024-49344 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
558 5.4 MEDIUM
Network
- - IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages is vulnerable to HTML injection, caused by improper validation of user-supplied input of text fields used to construct workflow email notific… CWE-80
Basic XSS
CVE-2024-49337 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
559 - - - IBM OpenPages with Watson 8.3 and 9.0 IBM OpenPages could allow a remote attacker to traverse directories on the system. An attacker with privileges to perform Import Configuration could send a speci… - CVE-2024-49780 2025-02-20 21:15 2025-02-20 Show GitHub Exploit DB Packet Storm
560 5.3 MEDIUM
Network
- - The LTL Freight Quotes – GlobalTranz Edition plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the engtz_wd_save_dropship AJAX endpoint in a… CWE-862
 Missing Authorization
CVE-2025-1483 2025-02-20 19:15 2025-02-20 Show GitHub Exploit DB Packet Storm