Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191081 9 危険 jdedwards
オラクル
- Oracle PeopleSoft Enterprise などの製品における脆弱性 CWE-noinfo
情報不足
CVE-2008-1828 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
191082 10 危険 オラクル - Oracle E-Business Suite における脆弱性 CWE-noinfo
情報不足
CVE-2008-1827 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191083 10 危険 オラクル - Oracle E-Business Suite における脆弱性 CWE-noinfo
情報不足
CVE-2008-1826 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191084 10 危険 オラクル - Oracle Application Express の Oracle Application Express コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2008-1822 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191085 5.5 警告 オラクル - Oracle Application Express における脆弱性 CWE-noinfo
情報不足
CVE-2008-1811 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191086 10 危険 Novell - Novell eDirectory におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1809 2012-09-25 17:16 2008-04-2 Show GitHub Exploit DB Packet Storm
191087 4.3 警告 hoffice - Smart Classified ADS などにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1793 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191088 7.5 危険 mygamingladder - My Gaming Ladder の ladder.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1791 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191089 6.5 警告 iScripts - iScripts SocialWare における任意のファイルをアップロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1790 2012-09-25 17:16 2008-04-15 Show GitHub Exploit DB Packet Storm
191090 5 警告 Novell - Novell eDirectory の eDirectory Host Environment サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1777 2012-09-25 17:16 2008-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1911 - - - An arbitrary file upload vulnerability in the component /comm/upload of cool-admin-java v1.0 allows attackers to execute arbitrary code via uploading a crafted file. - CVE-2024-57408 2025-02-11 09:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1912 - - - Lemmy, a link aggregator and forum for the fediverse, is vulnerable to server-side request forgery via a dependency on activitypub_federation, a framework for ActivityPub federation in Rust. This vul… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-25194 2025-02-11 08:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1913 6.3 MEDIUM
Network
- - A vulnerability was found in ESAFENET CDG 5.6.3.154.205_20250114. It has been classified as critical. Affected is an unknown function of the file addPolicyToSafetyGroup.jsp. The manipulation of the a… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1158 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1914 - - - A host header injection vulnerability exists in the NPM package of perfood/couch-auth <= 0.21.2. By sending a specially crafted host header in the email change confirmation request, it is possible to… - CVE-2024-57177 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1915 - - - A sensitive information disclosure vulnerability in the Tenda W18E V16.01.0.8(1625) web management portal allows an unauthenticated remote attacker to retrieve sensitive configuration information, in… - CVE-2024-46437 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1916 - - - Hardcoded credentials in Tenda W18E V16.01.0.8(1625) allows unauthenticated remote attackers to gain root access to the device over the telnet service. - CVE-2024-46436 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1917 - - - A stack overflow vulnerability in the Tenda W18E V16.01.0.8(1625) web management portal allows an authenticated remote attacker to cause a denial of service or potentially execute arbitrary code. Thi… - CVE-2024-46435 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1918 - - - Tenda W18E V16.01.0.8(1625) suffers from authentication bypass in the web management portal allowing an unauthorized remote attacker to gain administrative access by sending a specially crafted HTTP … - CVE-2024-46434 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1919 - - - A default credentials vulnerability in Tenda W18E V16.01.0.8(1625) allows unauthenticated remote attackers to access the web management portal using the default rzadmin account with administrative pr… - CVE-2024-46433 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1920 - - - Tenda W18E V16.01.0.8(1625) is vulnerable to Incorrect Access Control. An attacker can send a specially crafted HTTP POST request to the setQuickCfgWifiAndLogin function, which allows unauthorized ch… - CVE-2024-46432 2025-02-11 07:15 2025-02-11 Show GitHub Exploit DB Packet Storm