Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Dec. 26, 2024, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189401 7.2 危険 ヒューレット・パッカード - HP-UX の HP Power Manager RA における任意のコードを実行される脆弱性 - CVE-2007-2351 2012-09-25 16:47 2007-04-25 Show GitHub Exploit DB Packet Storm
189402 5.8 警告 Invision Power Services, Inc - IP.Board におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2349 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
189403 7.5 危険 oneclick cms - OneClick CMS の main/forum/komentar.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2347 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
189404 7.5 危険 Phorum - Phorum における SQL インジェクションの脆弱性 - CVE-2007-2339 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
189405 7.5 危険 Phorum - Phorum の include/admin/banlist.php におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-2338 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
189406 4.3 警告 Exponent CMS project - Exponent CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-2337 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
189407 7.8 危険 intervations - InterVations NaviCOPA Web Server におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2336 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
189408 7.5 危険 Nortel Networks - Nortel VPN Router における管理インターフェースにアクセスされる脆弱性 - CVE-2007-2334 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
189409 10 危険 Nortel Networks - Nortel VPN Router におけるプライベートネットワークにアクセスされる脆弱性 - CVE-2007-2333 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
189410 9 危険 Nortel Networks - Nortel VPN Router におけるパスワードを取得される脆弱性 - CVE-2007-2332 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Dec. 26, 2024, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
31 - - - A reflected Cross-Site Scripting vulnerability in the standard documentation upload functionality in Portabilis i-Educar 2.9 allows attacker to craft malicious urls with arbitrary javascript in the '… Update - CVE-2024-55239 2024-12-25 12:15 2024-12-19 Show GitHub Exploit DB Packet Storm
32 6.7 MEDIUM
Local
- - In the linux kernel, if IMA appraisal is used with the "ima_appraise=log" boot param, lockdown can be defeated with kexec on any machine when Secure Boot is disabled or unavailable. IMA prevents sett… New - CVE-2022-21505 2024-12-25 04:15 2024-12-25 Show GitHub Exploit DB Packet Storm
33 - - - Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.… New - CVE-2019-2483 2024-12-25 04:15 2024-12-25 Show GitHub Exploit DB Packet Storm
34 - - - A SQL injection in the Amazon Redshift ODBC Driver v2.1.5.0 (Windows or Linux) allows a user to gain escalated privileges via the SQLTables or SQLColumns Metadata APIs. Users are recommended to upgra… New - CVE-2024-12746 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
35 - - - A SQL injection in the Amazon Redshift Python Connector v2.1.4 allows a user to gain escalated privileges via the get_schemas, get_tables, or get_columns Metadata APIs. Users are recommended to upgra… New - CVE-2024-12745 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
36 - - - A SQL injection in the Amazon Redshift JDBC Driver in v2.1.0.31 allows a user to gain escalated privileges via the getSchemas, getTables, or getColumns Metadata APIs. Users should upgrade to the driv… New - CVE-2024-12744 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
37 - - - systeminformation is a System and OS information library for node.js. In affected versions SSIDs are not sanitized when before they are passed as a parameter to cmd.exe in the `getWindowsIEEE8021x` f… Update - CVE-2024-56334 2024-12-25 02:15 2024-12-21 Show GitHub Exploit DB Packet Storm
38 - - - A vulnerability was found in Emlog Pro up to 2.4.1. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/user.php. The manipulation of the argument keyword … Update - CVE-2024-12842 2024-12-25 02:15 2024-12-21 Show GitHub Exploit DB Packet Storm
39 - - - Gogs is an open source self-hosted Git service. A malicious user is able to write a file to an arbitrary path on the server to gain SSH access to the server. The vulnerability is fixed in 0.13.1. New - CVE-2024-55947 2024-12-25 01:15 2024-12-24 Show GitHub Exploit DB Packet Storm
40 - - - A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222. It has been classified as critical. This affects an unknown part of the file ../mtd/Co… New - CVE-2024-12897 2024-12-25 01:15 2024-12-23 Show GitHub Exploit DB Packet Storm