Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 17, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188671 5 警告 Moshe Weitzman - Drupal 用 Organic Groups モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2081 2012-08-17 15:53 2012-03-28 Show GitHub Exploit DB Packet Storm
188672 6.8 警告 Node Limit Number - Drupal 用 Node Limit Number モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2080 2012-08-17 15:49 2012-03-28 Show GitHub Exploit DB Packet Storm
188673 5.1 警告 Rob Loach - Drupal 用 ShareThis モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2077 2012-08-17 15:46 2012-03-28 Show GitHub Exploit DB Packet Storm
188674 2.1 注意 Rob Loach - Drupal 用 ShareThis モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2076 2012-08-17 15:42 2012-03-28 Show GitHub Exploit DB Packet Storm
188675 2.1 注意 Joel Stein - Drupal 用 Contact Save モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2075 2012-08-17 15:36 2012-03-28 Show GitHub Exploit DB Packet Storm
188676 5 警告 Mads Peter Henderson - Drupal 用 Ubercart Views モジュールにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-2074 2012-08-17 15:32 2012-03-28 Show GitHub Exploit DB Packet Storm
188677 6 警告 Kristof De Jaeger - Drupal 用の Bundle copy モジュールにおける任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2073 2012-08-17 15:30 2012-03-28 Show GitHub Exploit DB Packet Storm
188678 2.1 注意 Patrick Przybilla - Drupal 用 Share Buttons モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2072 2012-08-17 15:27 2012-03-28 Show GitHub Exploit DB Packet Storm
188679 2.1 注意 Geoff Davies - Drupal 用 Contact Forms モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2071 2012-08-17 15:12 2012-03-28 Show GitHub Exploit DB Packet Storm
188680 3.5 注意 Andrew Levine - Drupal 用 MultiBlock モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2070 2012-08-17 15:10 2012-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 18, 2024, 5:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
411 - - - Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially enable escalation of pri… Update CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2024-39766 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
412 - - - Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentially enable escalation of privilege via local access. Update CWE-284
Improper Access Control
CVE-2024-39609 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
413 - - - Improper neutralization of special elements used in an SQL command ('SQL Injection') in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially ena… Update CWE-89
SQL Injection
CVE-2024-39368 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
414 - - - Improper access control in UEFI firmware in some Intel(R) Server M20NTP Family may allow a privileged user to potentially enable information disclosure via local access. Update CWE-284
Improper Access Control
CVE-2024-39285 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
415 - - - Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 may allow an authenticated user to potentially enable escalation of privilege v… Update CWE-427
 Uncontrolled Search Path Element
CVE-2024-38668 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
416 - - - Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access. Update CWE-787
 Out-of-bounds Write
CVE-2024-38665 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
417 - - - Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may allow an authenticated user to potentially enable escalation of privilege via local access. Update CWE-693
 Protection Mechanism Failure
CVE-2024-38660 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
418 - - - Uncontrolled search path in the Intel(R) Graphics Driver installers for versions 15.40 and 15.45 may allow an authenticated user to potentially enable escalation of privilege via local access. Update CWE-427
 Uncontrolled Search Path Element
CVE-2024-38387 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
419 - - - Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may allow an authenticated user to potentially enable escalation of privilege via loca… Update CWE-427
 Uncontrolled Search Path Element
CVE-2024-38383 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
420 - - - Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authenticated user to potentially enable denial of service via local access. Update CWE-20
 Improper Input Validation 
CVE-2024-37027 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm