Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 6:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191251 7.5 危険 nukescripts - NukeSentinel の nukesentinel.php における任意の SQL コマンドを実行される脆弱性 - CVE-2007-1493 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191252 7.1 危険 マイクロソフト - Microsoft Windows XP の winmm.dll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1492 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191253 7.5 危険 k5n.us - WebCalendar における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-1483 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191254 4.3 警告 liqua - WBBlog の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1482 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191255 5 警告 mcgallery - McGallery の download.php におけるスクリプトソースコードを取得される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1478 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191256 5.4 警告 The PHP Group - PHP の interbase エクステンションにおけるバッファオーバーフローの脆弱性 - CVE-2007-1475 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191257 6.8 警告 Horde - Horde Project Horde における任意のファイルを削除される脆弱性 - CVE-2007-1474 2012-09-25 16:47 2007-03-14 Show GitHub Exploit DB Packet Storm
191258 4.3 警告 Horde - Horde Framework の framework/NLS/NLS.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1473 2012-09-25 16:47 2007-03-14 Show GitHub Exploit DB Packet Storm
191259 7.5 危険 orion-blog - Orion-Blog の admin/default.asp における権限を取得され脆弱性 - CVE-2007-1471 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
191260 6.8 警告 netsw - LIBFtp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-1470 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 16, 2025, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
541 - - - Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via /common/autocomplete.php. New - CVE-2023-42250 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
542 - - - Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via vam/vam_visits.php. New - CVE-2023-42249 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
543 - - - Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via monitor/s_monitor_map.php. New - CVE-2023-42247 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
544 - - - Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via /vam/vam_ep.php. New - CVE-2023-42246 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
545 - - - Selesta Visual Access Manager < 4.42.2 is vulnerable to Cross Site Scripting (XSS) via monitor/s_scheduledfile.php. New - CVE-2023-42245 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
546 - - - Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Cross Site Scripting (XSS) via the Filter/FilterEditor function. New - CVE-2023-42233 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
547 - - - Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Cross Site Scripting (XSS) via the WSCView/Save function. New - CVE-2023-42230 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
548 - - - BigId PrivacyPortal v179 is vulnerable to Cross Site Scripting (XSS) via the "Label" field in the Report template function. New - CVE-2024-44771 2025-01-15 00:15 2025-01-14 Show GitHub Exploit DB Packet Storm
549 - - - On affected platforms running Arista EOS with SNMP configured, if “snmp-server transmit max-size” is configured, under some circumstances a specially crafted packet can cause the snmpd process to lea… Update - CVE-2024-7095 2025-01-15 00:15 2025-01-11 Show GitHub Exploit DB Packet Storm
550 - - - Tenda ac9 v1.0 firmware v15.03.05.19 is vulnerable to command injection in /goform/SetSambaCfg, which may lead to remote arbitrary code execution. Update - CVE-2025-22949 2025-01-15 00:15 2025-01-11 Show GitHub Exploit DB Packet Storm