Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 14, 2024, 12:10 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188811 5 警告 Mozilla Foundation - 複数の Mozilla 製品の WebGLBuffer::FindMaxUshortElement 関数における重要な情報を取得される脆弱性 CWE-189
数値処理の問題
CVE-2012-0473 2012-07-23 17:56 2012-04-24 Show GitHub Exploit DB Packet Storm
188812 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0471 2012-07-23 17:56 2012-04-24 Show GitHub Exploit DB Packet Storm
188813 10 危険 Mozilla Foundation - 複数の Mozilla 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0470 2012-07-23 17:55 2012-04-24 Show GitHub Exploit DB Packet Storm
188814 10 危険 Mozilla Foundation - 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-0469 2012-07-23 17:55 2012-04-24 Show GitHub Exploit DB Packet Storm
188815 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (表明違反およびメモリ破損) の脆弱性 CWE-119
バッファエラー
CVE-2012-0468 2012-07-23 17:54 2012-04-24 Show GitHub Exploit DB Packet Storm
188816 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-0467 2012-07-23 17:54 2012-04-24 Show GitHub Exploit DB Packet Storm
188817 7.2 危険 日立 - 日立の JP1/NETM/DM のパッケージセットアップマネージャにおける権限昇格の脆弱性 CWE-noinfo
情報不足
- 2012-07-23 16:14 2012-07-13 Show GitHub Exploit DB Packet Storm
188818 8.5 危険 OSIsoft - OSIsoft PI OPC DA Interface におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3008 2012-07-23 16:01 2012-07-19 Show GitHub Exploit DB Packet Storm
188819 4.3 警告 IBM - IBM Lotus Protector for Mail Security および Proventia Network Mail Security System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2955 2012-07-23 15:57 2012-07-20 Show GitHub Exploit DB Packet Storm
188820 4 警告 Moodle - Moodle における電子メールアドレスを見つけられる脆弱性 CWE-200
情報漏えい
CVE-2011-4593 2012-07-23 15:51 2011-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 14, 2024, 6:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211 7.5 HIGH
Network
level1 wbr-6012_firmware The LevelOne WBR-6012 router with firmware R0.40e6 is vulnerable to improper resource allocation within its web application, where a series of crafted HTTP requests can cause a reboot. This could lea… Update CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-31152 2024-11-14 03:15 2024-10-30 Show GitHub Exploit DB Packet Storm
212 8.1 HIGH
Network
level1 wbr-6012_firmware A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulnerabilities can forc… Update CWE-798
 Use of Hard-coded Credentials
CVE-2024-28875 2024-11-14 03:10 2024-10-30 Show GitHub Exploit DB Packet Storm
213 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ntfs3: Add bounds checking to mi_enum_attr() Added bounds checking to make sure that every attr don't stray beyond valid memory r… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2024-50248 2024-11-14 03:07 2024-11-9 Show GitHub Exploit DB Packet Storm
214 7.5 HIGH
Network
level1 wbr-6012_firmware The WBR-6012 is a wireless SOHO router. It is a low-cost device which functions as an internet gateway for homes and small offices while aiming to be easy to configure and operate. In addition to pro… Update CWE-131
Incorrect Calculation of Buffer Size
CVE-2024-28052 2024-11-14 03:07 2024-10-30 Show GitHub Exploit DB Packet Storm
215 5.4 MEDIUM
Network
themepunch slider_revolution The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.7.18 due to insufficient input sanitization and ou… Update CWE-79
Cross-site Scripting
CVE-2024-8107 2024-11-14 03:06 2024-10-1 Show GitHub Exploit DB Packet Storm
216 5.4 MEDIUM
Network
benjaminzekavica easy_svg_support The Easy SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 3.7 due to insufficient input sanitization a… Update CWE-79
Cross-site Scripting
CVE-2024-10269 2024-11-14 02:59 2024-11-8 Show GitHub Exploit DB Packet Storm
217 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Check if more than chunk-size bytes are written A incorrectly formatted chunk may decompress into more than LZNT_CHUNK_… Update CWE-125
Out-of-bounds Read
CVE-2024-50247 2024-11-14 02:58 2024-11-9 Show GitHub Exploit DB Packet Storm
218 7.2 HIGH
Network
wavlink wn530h4_firmware
wn530hg4_firmware
wn572hg3_firmware
A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected is the function set_ipv6 of the file internet.cgi. The manipulation of the arg… Update CWE-77
Command Injection
CVE-2024-10429 2024-11-14 02:58 2024-10-28 Show GitHub Exploit DB Packet Storm
219 7.2 HIGH
Network
wavlink wn530h4_firmware
wn530hg4_firmware
wn572hg3_firmware
A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This issue affects the function set_ipv6 of the file firewall.cgi. The manipulation … Update CWE-77
Command Injection
CVE-2024-10428 2024-11-14 02:57 2024-10-28 Show GitHub Exploit DB Packet Storm
220 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field. Update CWE-209
Information Exposure Through an Error Message
CVE-2024-47803 2024-11-14 02:45 2024-10-3 Show GitHub Exploit DB Packet Storm