Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 16, 2024, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188911 7.5 危険 SAND STUDIO - AirDroid のデフォルト設定におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2012-3885 2012-07-30 16:38 2012-07-26 Show GitHub Exploit DB Packet Storm
188912 5 警告 SAND STUDIO - AirDroid におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2012-3884 2012-07-30 16:35 2012-07-26 Show GitHub Exploit DB Packet Storm
188913 5 警告 Igor Sysoev - nginx/Windows におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4963 2012-07-30 16:24 2012-07-26 Show GitHub Exploit DB Packet Storm
188914 7.5 危険 シトリックス・システムズ - Citrix Provisioning Services の SoapServer サービスにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4068 2012-07-30 16:22 2012-05-1 Show GitHub Exploit DB Packet Storm
188915 4.3 警告 Palo Alto Networks - 複数の Palo Alto Networks 製品 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4043 2012-07-30 16:20 2012-07-26 Show GitHub Exploit DB Packet Storm
188916 5 警告 アップル - Apple Xcode におけるキーチェーンエントリを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3698 2012-07-30 16:19 2012-07-26 Show GitHub Exploit DB Packet Storm
188917 3.7 注意 SystemTap - SystemTap の systemtap ランタイムツールにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2503 2012-07-30 16:06 2011-07-25 Show GitHub Exploit DB Packet Storm
188918 4.4 警告 SystemTap - SystemTap の systemtap ランタイムツールにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2502 2012-07-30 16:05 2011-07-25 Show GitHub Exploit DB Packet Storm
188919 5 警告 Stichting NLnet Labs - NSD の query.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-2978 2012-07-30 16:01 2012-07-19 Show GitHub Exploit DB Packet Storm
188920 3.5 注意 IBM - IBM Lotus Protector for Mail Security および IBM ISS Proventia Network Mail Security System におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2202 2012-07-30 15:59 2012-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 16, 2024, 5:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
461 7.5 HIGH
Network
- - A flaw was found in the Keycloak package. This flaw allows an attacker to utilize an LDAP injection to bypass the username lookup or potentially perform other malicious actions. New CWE-20
 Improper Input Validation 
CVE-2022-2232 2024-11-15 22:58 2024-11-15 Show GitHub Exploit DB Packet Storm
462 - - - An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.3 before 17.3.7, all versions starting from 17.4 before 17.4.4, all versions starting from 17.5 before 17.5.2. Thi… New CWE-708
 Incorrect Ownership Assignment
CVE-2024-9633 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
463 - - - A Directory listing issue was found in PHPGurukul User Registration & Login and User Management System 3.2, which allows remote attackers attacker to access sensitive files and directories via /login… New - CVE-2024-50843 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
464 - - - A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/school_year.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbi… New - CVE-2024-50842 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
465 - - - A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/calendar_of_events.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execu… New - CVE-2024-50841 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
466 - - - A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/class.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbitrary … New - CVE-2024-50840 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
467 - - - A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/add_subject.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbi… New - CVE-2024-50839 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
468 - - - Absolute path traversal (incorrect restriction of a path to a restricted directory) vulnerability in the EasyPHP web server, affecting version 14.1. This vulnerability could allow remote users to byp… New CWE-22
Path Traversal
CVE-2024-11215 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
469 - - - A vulnerability was found in Apereo CAS 6.6. It has been classified as critical. This affects an unknown part of the file /login?service of the component 2FA. The manipulation leads to improper authe… New CWE-287
Improper Authentication
CVE-2024-11209 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm
470 - - - A vulnerability was found in Apereo CAS 6.6 and classified as problematic. Affected by this issue is some unknown functionality of the file /login?service. The manipulation leads to session expiratio… New CWE-613
 Insufficient Session Expiration
CVE-2024-11208 2024-11-15 22:58 2024-11-14 Show GitHub Exploit DB Packet Storm