Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 18, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190481 7.5 危険 okulumunsitesi - Okul Otomasyon Portal の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5490 2012-09-25 16:59 2007-10-17 Show GitHub Exploit DB Packet Storm
190482 7.5 危険 kwsphp - KwsPHP の mg2 モジュールの index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5485 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
190483 4.3 警告 innovaage - InnovaAge InnovaShop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5480 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
190484 4.3 警告 nabh information systems - Nabh Stringbeans Portal のプロジェクトにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5478 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
190485 5 警告 Mono Project - Mono の System.Web の StaticFileHandler.cs における重要なファイルのソースコードを取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5473 2012-09-25 16:59 2007-10-18 Show GitHub Exploit DB Packet Storm
190486 2.1 注意 マイクロソフト - Microsoft Expression Media におけるカタログへのアクセス権を取得される脆弱性 CWE-200
CWE-310
CVE-2007-5470 2012-09-25 16:59 2007-10-15 Show GitHub Exploit DB Packet Storm
190487 7.5 危険 mydoop - doop CMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5465 2012-09-25 16:59 2007-10-15 Show GitHub Exploit DB Packet Storm
190488 6.5 警告 lfs - Live for Speed におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5464 2012-09-25 16:59 2007-10-15 Show GitHub Exploit DB Packet Storm
190489 7.1 危険 マイクロソフト - Windows Mobile などで使用される Microsoft ActiveSync におけるPIN/Password を解読される脆弱性 CWE-310
暗号の問題
CVE-2007-5460 2012-09-25 16:59 2007-10-15 Show GitHub Exploit DB Packet Storm
190490 6.8 警告 michael dempfle
Joomla!
- Joomla! 用の com_jfu or com_joomla_flash_uploader における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5457 2012-09-25 16:59 2007-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 18, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
561 - - - An issue in the mat_join2 component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. Update - CVE-2024-57626 2025-01-16 01:15 2025-01-14 Show GitHub Exploit DB Packet Storm
562 - - - An issue in the merge_table_prune_and_unionize component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. Update - CVE-2024-57625 2025-01-16 01:15 2025-01-14 Show GitHub Exploit DB Packet Storm
563 - - - An issue in the exp_atom component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. Update - CVE-2024-57624 2025-01-16 01:15 2025-01-14 Show GitHub Exploit DB Packet Storm
564 - - - An issue in the exp_bin component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. Update - CVE-2024-57622 2025-01-16 01:15 2025-01-14 Show GitHub Exploit DB Packet Storm
565 - - - An issue in the GDKanalytical_correlation component of MonetDB Server v11.47.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements. Update - CVE-2024-57621 2025-01-16 01:15 2025-01-14 Show GitHub Exploit DB Packet Storm
566 9.8 CRITICAL
Network
apache openmeetings Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.1.0 before 8.0.0 Description: Default clustering instructions at https://openmeetings.apache.org/Clustering.htm… Update - CVE-2024-54676 2025-01-16 00:50 2025-01-8 Show GitHub Exploit DB Packet Storm
567 8.7 HIGH
Network
- - A cross-site scripting (xss) vulnerability exists in the add_alert_check page of Observium CE 24.4.13528. A specially crafted HTTP request can lead to a arbitrary javascript code execution. An authen… New CWE-79
Cross-site Scripting
CVE-2024-47140 2025-01-16 00:15 2025-01-16 Show GitHub Exploit DB Packet Storm
568 8.7 HIGH
Network
- - A html code injection vulnerability exists in the vlan management part of Observium CE 24.4.13528. A specially crafted HTTP request can lead to an arbitrary html code. An authenticated user would nee… New CWE-79
Cross-site Scripting
CVE-2024-47002 2025-01-16 00:15 2025-01-16 Show GitHub Exploit DB Packet Storm
569 8.7 HIGH
Network
- - A cross-site scripting (xss) vulnerability exists in the weather map editor functionality of Observium CE 24.4.13528. A specially crafted HTTP request can lead to a arbitrary javascript code executio… New CWE-79
Cross-site Scripting
CVE-2024-45061 2025-01-16 00:15 2025-01-16 Show GitHub Exploit DB Packet Storm
570 9.8 CRITICAL
Network
- - A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the… New CWE-122
Heap-based Buffer Overflow
CVE-2024-12084 2025-01-16 00:15 2025-01-16 Show GitHub Exploit DB Packet Storm