Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Oct. 3, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191401 5 警告 シトリックス・システムズ - Citrix MetaFrame XP および Presentation Server の IMA サービスにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5861 2012-06-26 15:37 2006-11-8 Show GitHub Exploit DB Packet Storm
191402 5 警告 マイクロソフト
アドビシステムズ
- Adobe ColdFusion MX における任意のファイルを読み取られる脆弱性 CWE-20
不適切な入力確認
CVE-2006-5858 2012-06-26 15:37 2006-12-31 Show GitHub Exploit DB Packet Storm
191403 6.8 警告 アドビシステムズ - Adobe Download Manager におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-5856 2012-06-26 15:37 2006-12-6 Show GitHub Exploit DB Packet Storm
191404 7.5 危険 essen - Windows 上の Essentia Web Server におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-5850 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191405 6.8 警告 FreeWebshop - FreeWebshop の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5847 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191406 6.4 警告 FreeWebshop - FreeWebshop の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5846 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191407 7.5 危険 dodos scripts - DodosMail の dodosmail.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5841 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191408 7.5 危険 greenbeast cms - GreenBeast CMS の gbcms_php_files/up_loader.php におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5833 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191409 5 警告 aiocp - AIOCPにおける Web サーバのフルパスを取得される脆弱性 - CVE-2006-5832 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
191410 7.5 危険 aiocp - AIOCP の admin/code/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5831 2012-06-26 15:37 2006-11-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Oct. 3, 2024, 8:12 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2331 - - - The HTTPD binary in multiple ZTE routers has a stack-based buffer overflow vulnerability in rsa_decrypt function. This function is an API wrapper for LUA to decrypt RSA encrypted ciphertext, the decr… - CVE-2024-45413 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2332 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-8766 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2333 - - - An issue was discovered in BSC Smart Contract 0x0506e571aba3dd4c9d71bed479a4e6d40d95c833. Attackers are able to perform state manipulation attacks by borrowing a large amount of money and then using … - CVE-2024-44445 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2334 - - - An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_user in Kashipara Music Management System v1.0. This allows a low privileged atta… - CVE-2024-42798 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2335 - - - An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete t… - CVE-2024-42796 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2336 - - - Snappymail is an open source web-based email client. SnappyMail uses the `cleanHtml()` function to cleanup HTML and CSS in emails. Research discovered that the function has a few bugs which cause an … CWE-79
Cross-site Scripting
CVE-2024-45800 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2337 - - - An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_user&id=3 in Kashipara Music Management System v1.0. This vulnerability allows an … - CVE-2024-42795 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2338 - - - Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user. - CVE-2024-42794 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2339 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-34016 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
2340 - - - U-Boot environment is read from unauthenticated partition. - CVE-2024-22013 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm