Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 7, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189151 6.8 警告 nuhit - NuSEO.PHP の admin/nuseo_admin_d.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5409 2012-09-25 16:59 2007-10-12 Show GitHub Exploit DB Packet Storm
189152 6.8 警告 joomlaequipment - Joomla! 用の com_jcs コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5407 2012-09-25 16:59 2007-10-12 Show GitHub Exploit DB Packet Storm
189153 6.8 警告 miranda-im - Miranda IM の yahoo.c におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-5396 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
189154 7.5 危険 VMware
OpenPegasus.org
- OpenPegasus Management サーバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5360 2012-09-25 16:59 2008-01-7 Show GitHub Exploit DB Packet Storm
189155 10 危険 ヒューレット・パッカード - HP Select Identity における不特定のアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2007-5391 2012-09-25 16:59 2007-10-10 Show GitHub Exploit DB Packet Storm
189156 6.5 警告 lightblog - LightBlog の cp_memberedit.php における任意のアカウントの権限を昇格される脆弱性 CWE-287
不適切な認証
CVE-2007-5374 2012-09-25 16:59 2007-10-11 Show GitHub Exploit DB Packet Storm
189157 2.1 注意 ldapscripts - ldapscripts におけるパスワードを読まれる脆弱性 CWE-310
暗号の問題
CVE-2007-5373 2012-09-25 16:59 2007-10-11 Show GitHub Exploit DB Packet Storm
189158 6.8 警告 MODX - MODx の mutate_content.dynamic.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5371 2012-09-25 16:59 2007-10-11 Show GitHub Exploit DB Packet Storm
189159 4.3 警告 Netwin Ltd - DNews News Server の cgi-bin/dnewsweb.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5370 2012-09-25 16:59 2007-10-11 Show GitHub Exploit DB Packet Storm
189160 5 警告 massive entertainment - Conflict の Massive Entertainment World におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2007-5369 2012-09-25 16:59 2007-10-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 7, 2025, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
301 - - - Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Telegram Bot & Channel allows Cross Site Request Forgery.This issue affects Telegram Bot & Channel: from n/a through 3.8.2. CWE-352
 Origin Validation Error
CVE-2024-38789 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
302 - - - Cross-Site Request Forgery (CSRF) vulnerability in Matomo Matomo Analytics allows Cross Site Request Forgery.This issue affects Matomo Analytics: from n/a through 5.1.1. CWE-352
 Origin Validation Error
CVE-2024-38766 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
303 - - - Cross-Site Request Forgery (CSRF) vulnerability in Freelancelot Oceanic allows Cross Site Request Forgery.This issue affects Oceanic: from n/a through 1.0.48. CWE-352
 Origin Validation Error
CVE-2024-38765 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
304 - - - Cross-Site Request Forgery (CSRF) vulnerability in Themes4WP Popularis Verse allows Cross Site Request Forgery.This issue affects Popularis Verse: from n/a through 1.1.1. CWE-352
 Origin Validation Error
CVE-2024-38763 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
305 - - - Cross-Site Request Forgery (CSRF) vulnerability in The Events Calendar Event Tickets allows Cross Site Request Forgery.This issue affects Event Tickets: from n/a through 5.11.0.4. CWE-352
 Origin Validation Error
CVE-2024-38762 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
306 - - - Cross-Site Request Forgery (CSRF) vulnerability in Tagbox Taggbox allows Cross Site Request Forgery.This issue affects Taggbox: from n/a through 3.3. CWE-352
 Origin Validation Error
CVE-2024-38754 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
307 - - - Cross-Site Request Forgery (CSRF) vulnerability in Labib Ahmed Animated Rotating Words allows Cross Site Request Forgery.This issue affects Animated Rotating Words: from n/a through 5.6. CWE-352
 Origin Validation Error
CVE-2024-38753 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
308 - - - Cross-Site Request Forgery (CSRF) vulnerability in Magazine3 Google Adsense & Banner Ads by AdsforWP allows Cross Site Request Forgery.This issue affects Google Adsense & Banner Ads by AdsforWP: from… CWE-352
 Origin Validation Error
CVE-2024-38751 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
309 - - - Cross-Site Request Forgery (CSRF) vulnerability in MBE Worldwide S.p.A. MBE eShip allows Cross Site Request Forgery.This issue affects MBE eShip: from n/a through 2.1.2. CWE-352
 Origin Validation Error
CVE-2024-38729 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm
310 - - - Cross-Site Request Forgery (CSRF) vulnerability in Metorik Metorik – Reports & Email Automation for WooCommerce allows Cross Site Request Forgery.This issue affects Metorik – Reports & Email Automati… CWE-352
 Origin Validation Error
CVE-2024-38691 2025-01-2 21:15 2025-01-2 Show GitHub Exploit DB Packet Storm