Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 18, 2024, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188551 5 警告 Munin - Munin の munin-cgi-graph におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2147 2012-08-29 11:17 2012-08-26 Show GitHub Exploit DB Packet Storm
188552 4.3 警告 Elixir - Elixir における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2012-2146 2012-08-29 11:14 2012-08-26 Show GitHub Exploit DB Packet Storm
188553 6.8 警告 Munin - Munin の cgi-bin/munin-cgi-graph における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-2104 2012-08-29 10:56 2012-08-26 Show GitHub Exploit DB Packet Storm
188554 9.3 危険 Sitecom - Sitecom WLM-2501 におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1921 2012-08-29 10:28 2012-08-26 Show GitHub Exploit DB Packet Storm
188555 4.3 警告 Elefant CMS - Elefant CMS の apps/admin/handlers/preview.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1296 2012-08-29 10:26 2012-08-26 Show GitHub Exploit DB Packet Storm
188556 6.8 警告 GNU Project - GNU Gnash の libbase/GnashImage.h における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1175 2012-08-28 16:58 2012-08-26 Show GitHub Exploit DB Packet Storm
188557 4.3 警告 PluXml - PluXml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4675 2012-08-28 16:47 2012-04-16 Show GitHub Exploit DB Packet Storm
188558 5 警告 PluXml - PluXml におけるインストールパスを取得される脆弱性性 CWE-200
情報漏えい
CVE-2012-4674 2012-08-28 16:46 2012-04-16 Show GitHub Exploit DB Packet Storm
188559 7.5 危険 PluXml - PluXml の update/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2227 2012-08-28 16:44 2012-04-16 Show GitHub Exploit DB Packet Storm
188560 7.5 危険 Thomas Hunter - NeoInvoice の application/controllers/invoice.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4673 2012-08-28 16:43 2012-08-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 18, 2024, 4:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 - - - An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file. New - CVE-2024-50986 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
402 - - - A cross-site scripting (XSS) vulnerability in Shenzhen Landray Software Co.,LTD Landray EKP v16 and earlier allows attackers to execute arbitrary web scripts or HTML via a crafted payload. New - CVE-2024-48068 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
403 5.9 MEDIUM
Network
- - IBM Concert Software 1.0.0 through 1.0.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could expl… New CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2024-43189 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
404 6.1 MEDIUM
Network
- - IBM Concert Software 1.0.0 through 1.0.1 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI thus altering th… New CWE-79
Cross-site Scripting
CVE-2024-41785 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
405 - - - A vulnerability classified as problematic has been found in code-projects Online Shop Store 1.0. This affects an unknown part of the file /signup.php. The manipulation of the argument m2 with the inp… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-11243 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
406 - - - A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/ad_list.php?action=pass of the component Keyword Filter… New CWE-89
CWE-74
SQL Injection
Injection
CVE-2024-11242 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
407 - - - A vulnerability was found in code-projects Job Recruitment 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file reset.php. The manipulation of… New - CVE-2024-11241 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
408 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-9530. Reason: This candidate is a reservation duplicate of CVE-2024-9530. Notes: All CVE users should reference CV… New - CVE-2024-10691 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
409 5.3 MEDIUM
Network
- - A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) IPv4 access control list (ACL) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenti… New CWE-284
Improper Access Control
CVE-2024-20373 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm
410 9.1 CRITICAL
Network
- - A vulnerability in the external authentication mechanism of Cisco Modeling Labs could allow an unauthenticated, remote attacker to access the web interface with administrative privileges. This vul… New CWE-305
 Authentication Bypass by Primary Weakness
CVE-2023-20154 2024-11-16 00:15 2024-11-16 Show GitHub Exploit DB Packet Storm