Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Dec. 25, 2024, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190361 7.5 危険 nukeai - NukeAI モジュールの modules/NukeAI/util.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6202 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
190362 7.5 危険 Neocrome - Neocrome Seditio の system/core/users/users.profile.inc.php における SQL インジェクションの脆弱性 - CVE-2006-6177 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
190363 7.5 危険 Horde - Horde Kronolith の lib/FBView.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6175 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
190364 7.5 危険 MPlayer project
Xine
- xine/xine-lib などの Real Media 入力プラグインにおけるバッファオーバーフローの脆弱性 - CVE-2006-6172 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
190365 7.2 危険 OpenBSD - OpenBSD の ELF ld.so における LD_PRELOAD などの危険な変数を受け渡される脆弱性 - CVE-2006-6164 2012-09-25 15:36 2006-11-19 Show GitHub Exploit DB Packet Storm
190366 7.5 危険 michaelis freunde - ContentNow の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-6157 2012-09-25 15:36 2006-11-28 Show GitHub Exploit DB Packet Storm
190367 4.3 警告 Hscripts - HSRS の auth/message.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6156 2012-09-25 15:36 2006-11-28 Show GitHub Exploit DB Packet Storm
190368 7.5 危険 Hscripts - HSRS の addrating.php における SQL インジェクションの脆弱性 - CVE-2006-6155 2012-09-25 15:36 2006-11-28 Show GitHub Exploit DB Packet Storm
190369 7.5 危険 Hscripts - HSRS の addcode.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6154 2012-09-25 15:36 2006-11-28 Show GitHub Exploit DB Packet Storm
190370 7.5 危険 messagerie locale - Messagerie Locale の centre.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6151 2012-09-25 15:36 2006-11-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Dec. 25, 2024, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
31 - - - Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.… New - CVE-2019-2483 2024-12-25 04:15 2024-12-25 Show GitHub Exploit DB Packet Storm
32 - - - A SQL injection in the Amazon Redshift ODBC Driver v2.1.5.0 (Windows or Linux) allows a user to gain escalated privileges via the SQLTables or SQLColumns Metadata APIs. Users are recommended to upgra… New - CVE-2024-12746 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
33 - - - A SQL injection in the Amazon Redshift Python Connector v2.1.4 allows a user to gain escalated privileges via the get_schemas, get_tables, or get_columns Metadata APIs. Users are recommended to upgra… New - CVE-2024-12745 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
34 - - - A SQL injection in the Amazon Redshift JDBC Driver in v2.1.0.31 allows a user to gain escalated privileges via the getSchemas, getTables, or getColumns Metadata APIs. Users should upgrade to the driv… New - CVE-2024-12744 2024-12-25 02:15 2024-12-25 Show GitHub Exploit DB Packet Storm
35 - - - systeminformation is a System and OS information library for node.js. In affected versions SSIDs are not sanitized when before they are passed as a parameter to cmd.exe in the `getWindowsIEEE8021x` f… Update - CVE-2024-56334 2024-12-25 02:15 2024-12-21 Show GitHub Exploit DB Packet Storm
36 - - - A vulnerability was found in Emlog Pro up to 2.4.1. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/user.php. The manipulation of the argument keyword … Update - CVE-2024-12842 2024-12-25 02:15 2024-12-21 Show GitHub Exploit DB Packet Storm
37 - - - Gogs is an open source self-hosted Git service. A malicious user is able to write a file to an arbitrary path on the server to gain SSH access to the server. The vulnerability is fixed in 0.13.1. New - CVE-2024-55947 2024-12-25 01:15 2024-12-24 Show GitHub Exploit DB Packet Storm
38 - - - A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222. It has been classified as critical. This affects an unknown part of the file ../mtd/Co… New - CVE-2024-12897 2024-12-25 01:15 2024-12-23 Show GitHub Exploit DB Packet Storm
39 - - - A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222 and classified as problematic. Affected by this issue is some unknown functionality of … New - CVE-2024-12896 2024-12-25 01:15 2024-12-23 Show GitHub Exploit DB Packet Storm
40 - - - A reflected Cross-Site Scripting vulnerability in the standard documentation upload functionality in Portabilis i-Educar 2.9 allows attacker to craft malicious urls with arbitrary javascript in the '… Update - CVE-2024-55239 2024-12-25 00:15 2024-12-19 Show GitHub Exploit DB Packet Storm