Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
181 5.4 警告
Network
POSIMYTH The Plus Addons for Elementor Page Builder POSIMYTH の WordPress 用 The Plus Addons for Elementor Page Builder におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4983 2025-01-30 10:50 2024-06-27 Show GitHub Exploit DB Packet Storm
182 8.8 重要
Network
kodezen academy lms kodezen の WordPress 用 academy lms における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-32714 2025-01-30 10:49 2024-06-9 Show GitHub Exploit DB Packet Storm
183 7.2 重要
Network
mayurik advocate office management system mayurik の advocate office management system における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-3620 2025-01-30 10:49 2024-04-11 Show GitHub Exploit DB Packet Storm
184 5.5 警告
Local
xpdfreader project xpdf Glyph & Cog, LLC の Xpdf における境界外書き込みに関する脆弱性 CWE-787
CWE-787
CVE-2024-3900 2025-01-30 10:49 2024-04-17 Show GitHub Exploit DB Packet Storm
185 5.3 警告
Network
Liferay Digital Experience Platform
Liferay Portal
Liferay の Liferay Portal および Digital Experience Platform における観測可能な不一致に関する脆弱性 CWE-203
CWE-203
CVE-2024-26268 2025-01-30 10:47 2024-02-20 Show GitHub Exploit DB Packet Storm
186 5.4 警告
Network
bdthemes element pack bdthemes の WordPress 用 element pack における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-24840 2025-01-30 10:47 2024-03-23 Show GitHub Exploit DB Packet Storm
187 7.8 重要
Local
デル Dell Grab デルの Windows 用 Dell Grab における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2024-25958 2025-01-30 10:45 2024-03-26 Show GitHub Exploit DB Packet Storm
188 7.5 重要
Network
CE21, LLC CE21 Suite CE21, LLC の WordPress 用 CE21 Suite における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-10294 2025-01-30 10:40 2024-11-9 Show GitHub Exploit DB Packet Storm
189 9.8 緊急
Network
Eclipse Foundation Eclipse Mosquitto Eclipse Foundation の Eclipse Mosquitto における境界外書き込みに関する脆弱性 CWE-122
CWE-787
CVE-2024-10525 2025-01-30 10:40 2024-10-30 Show GitHub Exploit DB Packet Storm
190 4.3 警告
Network
Easy Social Feed Easy Social Feed WordPress 用 Easy Social Feed におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-1214 2025-01-30 10:40 2024-03-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274101 - mybb mybb Cross-site scripting (XSS) vulnerability in the redirect function in functions.php in MyBB (aka MyBulletinBoard) 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the url param… CWE-79
Cross-site Scripting
CVE-2008-4928 2011-03-8 12:13 2008-11-5 Show GitHub Exploit DB Packet Storm
274102 - ultravnc ultravnc Multiple stack-based buffer overflows in multiple functions in vncviewer/FileTransfer.cpp in vncviewer for UltraVNC 1.0.2 and 1.0.4 before 01252008, when in LISTENING mode or when using the DSM plugi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-5001 2011-03-8 12:13 2008-11-10 Show GitHub Exploit DB Packet Storm
274103 - invision_power_services invision_power_board SQL injection vulnerability in xmlout.php in Invision Power Board (IP.Board or IPB) 2.2.x and 2.3.x allows remote attackers to execute arbitrary SQL commands via the name parameter. CWE-89
SQL Injection
CVE-2008-4171 2011-03-8 12:12 2008-09-23 Show GitHub Exploit DB Packet Storm
274104 - apple mac_os_x
mac_os_x_server
Integer signedness error in BOM in Apple Mac OS X before 10.5.6 allows remote attackers to execute arbitrary code via the headers in a crafted CPIO archive, leading to a stack-based buffer overflow. CWE-189
Numeric Errors
CVE-2008-4217 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274105 - apple mac_os_x
mac_os_x_server
Multiple integer overflows in the kernel in Apple Mac OS X before 10.5.6 on Intel platforms allow local users to gain privileges via a crafted call to (1) i386_set_ldt or (2) i386_get_ldt. CWE-189
Numeric Errors
CVE-2008-4218 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274106 - apple mac_os_x
mac_os_x_server
The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS … CWE-399
 Resource Management Errors
CVE-2008-4219 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274107 - apple mac_os_x
mac_os_x_server
Integer overflow in the inet_net_pton API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) vi… CWE-189
Numeric Errors
CVE-2008-4220 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274108 - apple mac_os_x
mac_os_x_server
The strptime API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a… CWE-399
 Resource Management Errors
CVE-2008-4221 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274109 - apple mac_os_x
mac_os_x_server
natd in network_cmds in Apple Mac OS X before 10.5.6, when Internet Sharing is enabled, allows remote attackers to cause a denial of service (infinite loop) via a crafted TCP packet. CWE-399
 Resource Management Errors
CVE-2008-4222 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm
274110 - apple mac_os_x_server Podcast Producer in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to bypass authentication and gain administrative access via unspecified vectors. CWE-287
Improper Authentication
CVE-2008-4223 2011-03-8 12:12 2008-12-17 Show GitHub Exploit DB Packet Storm