Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 1, 2025, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189711 4.3 警告 JBMC Software - DirectAdmin の CMD_USER_STATS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1508 2012-09-25 16:47 2007-03-20 Show GitHub Exploit DB Packet Storm
189712 7.5 危険 OpenAFS - OpenAFS のデフォルト設定における権限を取得される脆弱性 CWE-16
環境設定
CVE-2007-1507 2012-09-25 16:47 2007-03-19 Show GitHub Exploit DB Packet Storm
189713 4.3 警告 オラクル - Oracle Portal の PORTAL.wwv_main.render_warning_screen におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1506 2012-09-25 16:47 2007-03-19 Show GitHub Exploit DB Packet Storm
189714 9.3 危険 マカフィー - McAfee ePO などの製品におけるスタックベースのオーバーフローの脆弱性 - CVE-2007-1498 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189715 6.8 警告 nukescripts - NukeSentinel におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1494 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189716 7.5 危険 nukescripts - NukeSentinel の nukesentinel.php における任意の SQL コマンドを実行される脆弱性 - CVE-2007-1493 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189717 7.1 危険 マイクロソフト - Microsoft Windows XP の winmm.dll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1492 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189718 7.5 危険 k5n.us - WebCalendar における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-1483 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189719 4.3 警告 liqua - WBBlog の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1482 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
189720 5 警告 mcgallery - McGallery の download.php におけるスクリプトソースコードを取得される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1478 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 1, 2025, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
21 - - - Missing Authorization vulnerability in Webful Creations Computer Repair Shop allows Privilege Escalation.This issue affects Computer Repair Shop: from n/a through 3.8119. New CWE-862
 Missing Authorization
CVE-2024-56061 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
22 - - - Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue affects WPLMS: from n/a before 1.9.9.5. New CWE-35
 Path Traversal: '.../...//'
CVE-2024-56045 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
23 - - - Authentication Bypass Using an Alternate Path or Channel vulnerability in VibeThemes WPLMS allows Authentication Bypass.This issue affects WPLMS: from n/a through 1.9.9. New CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-56044 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
24 - - - Incorrect Privilege Assignment vulnerability in VibeThemes WPLMS allows Privilege Escalation.This issue affects WPLMS: from n/a through 1.9.9. New CWE-266
 Incorrect Privilege Assignment
CVE-2024-56043 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
25 - - - Incorrect Privilege Assignment vulnerability in VibeThemes VibeBP allows Privilege Escalation.This issue affects VibeBP: from n/a through 1.9.9.4.1. New CWE-266
 Incorrect Privilege Assignment
CVE-2024-56040 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
26 - - - Missing Authorization vulnerability in Porthas Inc. Contact Form, Survey & Form Builder – MightyForms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contac… New CWE-862
 Missing Authorization
CVE-2024-56002 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
27 - - - Missing Authorization vulnerability in Torod Holding LTD Torod allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Torod: from n/a through 1.7. New CWE-862
 Missing Authorization
CVE-2024-55995 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
28 - - - Missing Authorization vulnerability in David de Boer Paytium.This issue affects Paytium: from n/a through 4.4.10. New CWE-862
 Missing Authorization
CVE-2024-51667 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
29 - - - Missing Authorization vulnerability in PriceListo Best Restaurant Menu by PriceListo.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.4.2. New CWE-862
 Missing Authorization
CVE-2024-49698 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
30 - - - Missing Authorization vulnerability in imw3 My Wp Brand – Hide menu & Hide Plugin.This issue affects My Wp Brand – Hide menu & Hide Plugin: from n/a through 1.1.2. New CWE-862
 Missing Authorization
CVE-2024-49694 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm