Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 12, 2025, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188911 4.3 警告 マイクロソフト - Exchange Server 2003 SP2 用の Microsoft OWA におけるオープンリダイレクトの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1547 2012-09-25 17:16 2008-10-20 Show GitHub Exploit DB Packet Storm
188912 7.8 危険 三菱電機 - Mitsubishi Electric GB 空調制御システムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-1546 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188913 4.3 警告 マイクロソフト - Microsoft Internet Explorer 7 の XMLHttpRequest object の setRequestHeader メソッドにおける HTTP リクエスト分割攻撃などを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1545 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188914 4.3 警告 his - HIS Webshop の cgi-bin/his-webshop.pl におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1541 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188915 7.5 危険 Mambo Foundation
Joomla!
- Joomla! および Mambo 用の Datsogallery における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1540 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188916 4.3 警告 Zoho Corporation - ManageEngine EventLog Analyzer の searchAction.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1538 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188917 7.5 危険 matti kiviharju - Joomla! 用の Matti Kiviharju rekry コンポーネントにおける SQL インジェクションの脆弱性 CWE-20
CWE-89
CVE-2008-1535 2012-09-25 17:16 2008-03-28 Show GitHub Exploit DB Packet Storm
188918 6.8 警告 Joomla! - Joomla! の XML-RPC Blogger API プラグインにおける無許可の記事操作を実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-1533 2012-09-25 17:16 2008-02-7 Show GitHub Exploit DB Packet Storm
188919 5 警告 perlbal - Perlbal におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-1532 2012-09-25 17:16 2008-03-8 Show GitHub Exploit DB Packet Storm
188920 4.3 警告 LIGHTTPD - lighttpd の connections.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-1531 2012-09-25 17:16 2008-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 12, 2025, 4:59 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
321 - - - Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Drupal Security Kit allows HTTP DoS.This issue affects Security Kit: from 0.0.0 before 2.0.3. New - CVE-2024-13275 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
322 - - - Improper Control of Interaction Frequency vulnerability in Drupal Open Social allows Functionality Misuse.This issue affects Open Social: from 0.0.0 before 12.3.8, from 12.4.0 before 12.4.5. New - CVE-2024-13274 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
323 - - - Insufficient Granularity of Access Control vulnerability in Drupal Paragraphs table allows Content Spoofing.This issue affects Paragraphs table: from 0.0.0 before 1.23.0, from 2.0.0 before 2.0.2. New - CVE-2024-13272 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
324 - - - Incorrect Authorization vulnerability in Drupal Content Entity Clone allows Forceful Browsing.This issue affects Content Entity Clone: from 0.0.0 before 1.0.4. New - CVE-2024-13271 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
325 - - - Incorrect Authorization vulnerability in Drupal Freelinking allows Forceful Browsing.This issue affects Freelinking: from 0.0.0 before 4.0.1. New - CVE-2024-13270 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
326 - - - Insertion of Sensitive Information Into Sent Data vulnerability in Drupal Advanced Varnish allows Forceful Browsing.This issue affects Advanced Varnish: from 0.0.0 before 4.0.11. New - CVE-2024-13269 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
327 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno allows PHP Local File Inclusion.This issue affects Opigno: from 7.X-1.0 before … New - CVE-2024-13268 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
328 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno TinCan Question Type allows PHP Local File Inclusion.This issue affects Opigno … New - CVE-2024-13267 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
329 - - - Incorrect Authorization vulnerability in Drupal Responsive and off-canvas menu allows Forceful Browsing.This issue affects Responsive and off-canvas menu: from 0.0.0 before 4.4.4. New - CVE-2024-13266 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm
330 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno Learning path allows PHP Local File Inclusion.This issue affects Opigno Learnin… New - CVE-2024-13265 2025-01-10 05:15 2025-01-10 Show GitHub Exploit DB Packet Storm