Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 17, 2024, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188451 5 警告 Munin - Munin の munin-cgi-graph におけるサービス運用妨害 (ディスク消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-4678 2012-08-29 11:25 2012-04-27 Show GitHub Exploit DB Packet Storm
188452 2.1 注意 Creative Commons module Project - Drupal 用 Creative Commons モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2297 2012-08-29 11:20 2012-04-25 Show GitHub Exploit DB Packet Storm
188453 5 警告 Munin - Munin の munin-cgi-graph におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2147 2012-08-29 11:17 2012-08-26 Show GitHub Exploit DB Packet Storm
188454 4.3 警告 Elixir - Elixir における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-2146 2012-08-29 11:14 2012-08-26 Show GitHub Exploit DB Packet Storm
188455 6.8 警告 Munin - Munin の cgi-bin/munin-cgi-graph における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-2104 2012-08-29 10:56 2012-08-26 Show GitHub Exploit DB Packet Storm
188456 9.3 危険 Sitecom - Sitecom WLM-2501 におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1921 2012-08-29 10:28 2012-08-26 Show GitHub Exploit DB Packet Storm
188457 4.3 警告 Elefant CMS - Elefant CMS の apps/admin/handlers/preview.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1296 2012-08-29 10:26 2012-08-26 Show GitHub Exploit DB Packet Storm
188458 6.8 警告 GNU Project - GNU Gnash の libbase/GnashImage.h における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1175 2012-08-28 16:58 2012-08-26 Show GitHub Exploit DB Packet Storm
188459 4.3 警告 PluXml - PluXml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4675 2012-08-28 16:47 2012-04-16 Show GitHub Exploit DB Packet Storm
188460 5 警告 PluXml - PluXml におけるインストールパスを取得される脆弱性性 CWE-200
情報漏えい
CVE-2012-4674 2012-08-28 16:46 2012-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 17, 2024, 12:17 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
91 - - - GLPI is a free asset and IT management software package. Starting in 9.2.0 and prior to 11.0.0, it is possible to download a document from the API without appropriate rights. Upgrade to 10.0.16. New CWE-285
Improper Authorization
CVE-2024-38370 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
92 - - - A vulnerability, which was classified as critical, was found in SourceCodester Student Record Management System 1.0. Affected is an unknown function of the file StudentRecordManagementSystem.cpp of t… New CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2024-11261 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
93 - - - In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missing permission check. This could lead to local escalation of privilege allowing u… New - CVE-2017-13314 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
94 - - - In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible infinite loop leading to resource exhaustion due to an incorrect bounds check. This could lead to remote deni… New - CVE-2017-13313 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
95 - - - In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper input validation. This could lead to local escalation of privilege where an app can start an activ… New - CVE-2017-13312 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
96 - - - In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can star… New - CVE-2017-13311 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
97 - - - In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can start an a… New - CVE-2017-13310 2024-11-16 07:15 2024-11-16 Show GitHub Exploit DB Packet Storm
98 - - - In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges… New - CVE-2017-13309 2024-11-16 06:35 2024-11-16 Show GitHub Exploit DB Packet Storm
99 - - - An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by r… New - CVE-2024-24459 2024-11-16 06:35 2024-11-16 Show GitHub Exploit DB Packet Storm
100 - - - An invalid memory access when handling the ENB Configuration Transfer messages containing invalid PLMN Identities in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to th… New - CVE-2024-24458 2024-11-16 06:35 2024-11-16 Show GitHub Exploit DB Packet Storm