Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188741 4.3 警告 ヒューレット・パッカード - HP SOA Registry Foundation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0449 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
188742 5 警告 ヒューレット・パッカード - HP SOA Registry Foundation における "データへの許可されないアクセス権" を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-0448 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
188743 10 危険 ヒューレット・パッカード - HP OVPI の Web サーバの helpmanager servlet における任意のコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2010-0447 2012-09-25 17:38 2010-03-8 Show GitHub Exploit DB Packet Storm
188744 4.3 警告 ヒューレット・パッカード - HP DreamScreen における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-0446 2012-09-25 17:38 2010-02-11 Show GitHub Exploit DB Packet Storm
188745 10 危険 ヒューレット・パッカード - HP NNM における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-0445 2012-09-25 17:38 2010-02-9 Show GitHub Exploit DB Packet Storm
188746 10 危険 ヒューレット・パッカード - Solaris 上で稼動する HP Operations Agent における任意のコードを実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0444 2012-09-25 17:38 2010-02-8 Show GitHub Exploit DB Packet Storm
188747 6.8 警告 ヒューレット・パッカード - Alpha プラットフォームで稼動する HP OpenVMS の RMS における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0443 2012-09-25 17:38 2010-02-2 Show GitHub Exploit DB Packet Storm
188748 6.5 警告 OTRS プロジェクト - OTRS の OTRS-Core の Kernel/System/Ticket.pm における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0438 2012-09-25 17:38 2010-02-8 Show GitHub Exploit DB Packet Storm
188749 4 警告 OpenTTD - OpenTTD におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0406 2012-09-25 17:38 2010-05-5 Show GitHub Exploit DB Packet Storm
188750 6.5 警告 OpenTTD - OpenTTD におけるサービス運用妨害 (DoS) の脆弱性 CWE-94
コード・インジェクション
CVE-2010-0402 2012-09-25 17:38 2010-05-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
701 9.8 CRITICAL
Network
- - Orca HCM from LEARNING DIGITAL has an Improper Authentication vulnerability, allowing unauthenticated remote attackers to log in to the system as any user. CWE-1390
 Weak Authentication
CVE-2025-1387 2025-02-17 13:15 2025-02-17 Show GitHub Exploit DB Packet Storm
702 6.3 MEDIUM
Network
- - A vulnerability classified as critical has been found in code-projects Real Estate Property Management System 1.0. This affects an unknown part of the file /search.php. The manipulation of the argume… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1374 2025-02-17 13:15 2025-02-17 Show GitHub Exploit DB Packet Storm
703 3.3 LOW
Local
- - A vulnerability was found in FFmpeg up to 7.1. It has been rated as problematic. Affected by this issue is the function mov_read_trak of the file libavformat/mov.c of the component MOV Parser. The ma… CWE-476
CWE-404
 NULL Pointer Dereference
 Improper Resource Shutdown or Release
CVE-2025-1373 2025-02-17 13:15 2025-02-17 Show GitHub Exploit DB Packet Storm
704 - - - Authentication bypass using an alternate path or channel issue exists in ”RoboForm Password Manager" App for Android versions prior to 9.7.4, which may allow an attacker with access to a device where… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2025-26700 2025-02-17 12:15 2025-02-17 Show GitHub Exploit DB Packet Storm
705 5.3 MEDIUM
Local
- - A vulnerability was found in GNU elfutils 0.192. It has been declared as critical. Affected by this vulnerability is the function dump_data_section/print_string_section of the file readelf.c of the c… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2025-1372 2025-02-17 12:15 2025-02-17 Show GitHub Exploit DB Packet Storm
706 5.3 MEDIUM
Local
- - A vulnerability was found in MicroWord eScan Antivirus 7.0.32 on Linux and classified as critical. Affected by this issue is the function strcpy of the component VirusPopUp. The manipulation leads to… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2025-1366 2025-02-17 10:15 2025-02-17 Show GitHub Exploit DB Packet Storm
707 5.3 MEDIUM
Local
- - A vulnerability, which was classified as critical, was found in GNU elfutils 0.192. This affects the function process_symtab of the file readelf.c of the component eu-readelf. The manipulation of the… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2025-1365 2025-02-17 09:15 2025-02-17 Show GitHub Exploit DB Packet Storm
708 - - - Out-of-bounds Read vulnerability (CWE-125) was found in CX-Programmer. Attackers may be able to read sensitive information or cause an application crash by abusing this vulnerability. - CVE-2025-0591 2025-02-17 09:15 2025-02-17 Show GitHub Exploit DB Packet Storm
709 - - - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Fahad Mahmood Keep Backup Daily allows Path Traversal. This issue affects Keep Backup Daily: from n/a t… CWE-22
Path Traversal
CVE-2025-26779 2025-02-17 08:15 2025-02-17 Show GitHub Exploit DB Packet Storm
710 - - - Cross-Site Request Forgery (CSRF) vulnerability in what3words what3words Address Field allows Stored XSS. This issue affects what3words Address Field: from n/a through 4.0.15. CWE-352
 Origin Validation Error
CVE-2025-26768 2025-02-17 08:15 2025-02-17 Show GitHub Exploit DB Packet Storm