Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 17, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188521 4.3 警告 マカフィー - McAfee Email Gateway におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4596 2012-08-24 11:54 2012-05-8 Show GitHub Exploit DB Packet Storm
188522 7.5 危険 マカフィー - McAfee Email and Web Security および McAfee Email Gateway における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2012-4595 2012-08-24 11:53 2012-05-8 Show GitHub Exploit DB Packet Storm
188523 4 警告 マカフィー - McAfee ePolicy Orchestrator におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4594 2012-08-24 11:53 2012-04-19 Show GitHub Exploit DB Packet Storm
188524 5 警告 マカフィー - McAfee Application Control および Change Control における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4593 2012-08-24 11:52 2012-04-27 Show GitHub Exploit DB Packet Storm
188525 5 警告 マカフィー - McAfee Enterprise Mobility Manager のポータルにおけるクッキーを取得される脆弱性 CWE-DesignError
CVE-2012-4592 2012-08-24 11:52 2012-08-22 Show GitHub Exploit DB Packet Storm
188526 5 警告 マカフィー - McAfee Enterprise Mobility Manager のポータルにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4591 2012-08-24 11:50 2012-08-22 Show GitHub Exploit DB Packet Storm
188527 4.3 警告 マカフィー - McAfee Enterprise Mobility Manager のポータルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4590 2012-08-24 11:48 2012-08-22 Show GitHub Exploit DB Packet Storm
188528 2.1 注意 マカフィー - McAfee Enterprise Mobility Manager のポータルにおけるアクセス権を取得される脆弱性 CWE-DesignError
CVE-2012-4589 2012-08-24 11:47 2012-08-22 Show GitHub Exploit DB Packet Storm
188529 4.3 警告 マカフィー - McAfee Enterprise Mobility Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-4588 2012-08-24 11:46 2012-03-23 Show GitHub Exploit DB Packet Storm
188530 3.5 注意 マカフィー - McAfee Enterprise Mobility Manager におけるユーザーパスワードを検出される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4587 2012-08-24 11:39 2012-03-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 17, 2024, 4:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251 4.8 MEDIUM
Network
mendix mendix A vulnerability has been identified in Mendix Runtime V10 (All versions < V10.16.0 only if the basic authentication mechanism is used by the application), Mendix Runtime V10.12 (All versions < V10.12… Update CWE-362
Race Condition
CVE-2024-50313 2024-11-16 02:12 2024-11-12 Show GitHub Exploit DB Packet Storm
252 4.4 MEDIUM
Local
lollms lollms A path traversal vulnerability exists in the api open_personality_folder endpoint of parisneo/lollms-webui. This vulnerability allows an attacker to read any folder in the personality_folder on the v… Update CWE-23
 Relative Path Traversal
CVE-2024-6985 2024-11-16 02:10 2024-10-12 Show GitHub Exploit DB Packet Storm
253 5.4 MEDIUM
Network
mysticalthemes meta_store_elements Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in bnayawpguy Meta Store Elements allows DOM-Based XSS.This issue affects Meta Store Elements… Update CWE-79
Cross-site Scripting
CVE-2024-51592 2024-11-16 02:04 2024-11-10 Show GitHub Exploit DB Packet Storm
254 5.4 MEDIUM
Network
sksdev sksdev_toolkit Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in sksdev SKSDEV Toolkit allows Stored XSS.This issue affects SKSDEV Toolkit: from n/a throug… Update CWE-79
Cross-site Scripting
CVE-2024-51595 2024-11-16 02:03 2024-11-10 Show GitHub Exploit DB Packet Storm
255 5.4 MEDIUM
Network
snilesh business Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Nilesh Shiragave Business allows Stored XSS.This issue affects Business: from n/a through … Update CWE-79
Cross-site Scripting
CVE-2024-51596 2024-11-16 02:01 2024-11-10 Show GitHub Exploit DB Packet Storm
256 5.5 MEDIUM
Local
lenovo dolby_vision_provisioning A potential information disclosure vulnerability was reported in Lenovo's packaging of Dolby Vision Provisioning software prior to version 2.0.0.2 that could allow a local attacker to read files on t… Update CWE-276
Incorrect Default Permissions 
CVE-2024-5474 2024-11-16 02:00 2024-10-12 Show GitHub Exploit DB Packet Storm
257 9.1 CRITICAL
Network
github enterprise_server An improper verification of cryptographic signature vulnerability was identified in GitHub Enterprise Server that allowed SAML SSO authentication to be bypassed resulting in unauthorized provisioning… Update CWE-347
 Improper Verification of Cryptographic Signature
CVE-2024-9487 2024-11-16 01:57 2024-10-11 Show GitHub Exploit DB Packet Storm
258 5.4 MEDIUM
Network
russellalbin simple_business_manager Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Russell Albin Simple Business Manager allows Stored XSS.This issue affects Simple Business… Update CWE-79
Cross-site Scripting
CVE-2024-51599 2024-11-16 01:55 2024-11-10 Show GitHub Exploit DB Packet Storm
259 7.5 HIGH
Network
gradio_project gradio Gradio is an open-source Python package designed for quick prototyping. This vulnerability is a **lack of integrity check** on the downloaded FRP client, which could potentially allow attackers to in… Update NVD-CWE-Other
CVE-2024-47867 2024-11-16 01:44 2024-10-11 Show GitHub Exploit DB Packet Storm
260 9.8 CRITICAL
Network
pedalo pedalo_connector The Pedalo Connector plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.0.5. This is due to insufficient restriction on the 'login_admin_user' function. T… Update CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-9822 2024-11-16 01:41 2024-10-11 Show GitHub Exploit DB Packet Storm