Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190011 4.3 警告 Ignite Realtime - Openfire の Admin コンソールの login.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6510 2012-09-25 17:27 2006-04-7 Show GitHub Exploit DB Packet Storm
190012 7.5 危険 huseyin bora abaci - Joomla! 用の com_myalbum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6489 2012-09-25 17:27 2009-03-19 Show GitHub Exploit DB Packet Storm
190013 7.5 危険 mole-group - Mole Group Taxi Map Script の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6484 2012-09-25 17:27 2009-03-18 Show GitHub Exploit DB Packet Storm
190014 6.8 警告 justjoomla - Joomla! 用の treeg コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6482 2012-09-25 17:27 2009-03-18 Show GitHub Exploit DB Packet Storm
190015 7.5 危険 joomprod - Joomla! 用の versioning コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6481 2012-09-25 17:27 2009-03-17 Show GitHub Exploit DB Packet Storm
190016 6.8 警告 Parallels - Parallels Virtuozzo 用の VZPP Web インターフェースの "パスワード変更" 機能におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6479 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
190017 6.8 警告 Parallels - Parallels Virtuozzo 用の VZPP Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6478 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
190018 7.5 危険 mumbojumbo - Mumbo Jumbo Media OP4 における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6477 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
190019 7.5 危険 mountaingrafix - MountainGrafix easyLink の detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6471 2012-09-25 17:27 2009-03-13 Show GitHub Exploit DB Packet Storm
190020 4.3 警告 Parallels - Parallels H-Sphere の webshell4 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6465 2012-09-25 17:27 2009-03-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 6, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
881 - - - Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Snap Deploy (Windows) before build 4625. CWE-276
Incorrect Default Permissions 
CVE-2025-24826 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
882 - - - A Local Code Injection Vulnerability exists in the product and version listed above. The vulnerability is due to incorrect default permissions and allows for DLLs to be executed with higher level per… - CVE-2025-24482 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
883 - - - An Incorrect Permission Assignment Vulnerability exists in the product and version listed above. The vulnerability is due to incorrect permissions being assigned to the remote debugger port and can a… - CVE-2025-24481 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
884 - - - In shouldSkipForInitialSUW of AdvancedPowerUsageDetail.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of priv… - CVE-2024-40677 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
885 - - - In onCreate of ChooserActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with no additional… - CVE-2024-40672 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
886 - - - In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nee… - CVE-2024-40670 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
887 - - - In TBD of TBD, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nee… - CVE-2024-40669 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
888 - - - In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User… - CVE-2024-40651 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
889 - - - In TBD of TBD, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User… - CVE-2024-40649 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm
890 - - - In _DevmemXReservationPageAddress of devicemem_server.c, there is a possible use-after-free due to improper casting. This could lead to local escalation of privilege in the kernel with no additional … - CVE-2024-34748 2025-01-29 06:15 2025-01-29 Show GitHub Exploit DB Packet Storm