Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 16, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188801 7.5 危険 IBM - IBM Global Security Kit における SSL サーバになりすまされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2203 2012-08-10 10:29 2012-08-8 Show GitHub Exploit DB Packet Storm
188802 5 警告 IBM - IBM Global Security Kit におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2191 2012-08-10 10:27 2012-08-8 Show GitHub Exploit DB Packet Storm
188803 6.5 警告 Chef Software, Inc. - Chef の Chef Server におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5098 2012-08-10 10:13 2011-10-1 Show GitHub Exploit DB Packet Storm
188804 5.5 警告 Chef Software, Inc. - Chef の Chef Server における cookbooks をアップロードまたは削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5097 2012-08-10 10:11 2011-06-23 Show GitHub Exploit DB Packet Storm
188805 6.5 警告 Chef Software, Inc. - Chef の API におけるユーザアカウントを管理される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5142 2012-08-10 10:10 2010-06-7 Show GitHub Exploit DB Packet Storm
188806 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-2791 2012-08-9 17:19 2011-08-2 Show GitHub Exploit DB Packet Storm
188807 10 危険 Mozilla Foundation - 複数の Mozilla 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-0449 2012-08-9 17:16 2012-01-31 Show GitHub Exploit DB Packet Storm
188808 5 警告 Mozilla Foundation - 複数の Mozilla 製品における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0447 2012-08-9 17:15 2012-01-31 Show GitHub Exploit DB Packet Storm
188809 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0446 2012-08-9 17:14 2012-01-31 Show GitHub Exploit DB Packet Storm
188810 5 警告 Mozilla Foundation - 複数の Mozilla 製品における HTML5 のフレームナビゲーションポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0445 2012-08-9 17:12 2012-01-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 17, 2024, 5:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
361 - - - The create user function in baltic-it TOPqw Webportal 1.35.287.1 (fixed in version1.35.291), in /Apps/TOPqw/BenutzerManagement.aspx/SaveNewUser, is vulnerable to SQL injection. The JSON object userna… New - CVE-2024-45875 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
362 - - - Improper input validation in UEFI firmware in some Intel(R) Server Board M10JNP2SB Family may allow a privileged user to potentially enable escalation of privilege via local access. New - CVE-2024-41167 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
363 - - - Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enable escalation of privilege via local access. New CWE-416
 Use After Free
CVE-2024-40885 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
364 - - - Improper input validation in firmware for some Intel(R) Server M20NTP Family UEFI may allow a privileged user to potentially enable escalation of privilege via local access. New CWE-20
 Improper Input Validation 
CVE-2024-39811 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
365 - - - Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially enable escalation of pri… New CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2024-39766 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
366 - - - Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentially enable escalation of privilege via local access. New CWE-284
Improper Access Control
CVE-2024-39609 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
367 - - - Improper neutralization of special elements used in an SQL command ('SQL Injection') in some Intel(R) Neural Compressor software before version v3.0 may allow an authenticated user to potentially ena… New CWE-89
SQL Injection
CVE-2024-39368 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
368 - - - Improper access control in UEFI firmware in some Intel(R) Server M20NTP Family may allow a privileged user to potentially enable information disclosure via local access. New CWE-284
Improper Access Control
CVE-2024-39285 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
369 - - - Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 may allow an authenticated user to potentially enable escalation of privilege v… New CWE-427
 Uncontrolled Search Path Element
CVE-2024-38668 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm
370 - - - Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access. New CWE-787
 Out-of-bounds Write
CVE-2024-38665 2024-11-15 23:00 2024-11-14 Show GitHub Exploit DB Packet Storm