Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 20, 2025, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192151 5 警告 headstart solutions - Headstart Solutions の DeskPRO における設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2006-6998 2012-09-25 15:36 2007-02-12 Show GitHub Exploit DB Packet Storm
192152 10 危険 MailEnable - MailEnable の暗号機能における脆弱性 CWE-287
不適切な認証
CVE-2006-6997 2012-09-25 15:36 2007-02-12 Show GitHub Exploit DB Packet Storm
192153 6.4 警告 indirmax.org - OzzyWork Gallery の add.asp における任意の ASP ファイルを実行される脆弱性 - CVE-2006-6994 2012-09-25 15:36 2007-02-12 Show GitHub Exploit DB Packet Storm
192154 7.8 危険 netcaptor - NetCaptor における制限された情報に他のドメインからアクセスされる脆弱性 - CVE-2006-6989 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192155 7.8 危険 phaseout - PhaseOut における他のドメインから制限情報にアクセスされる脆弱性 - CVE-2006-6986 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192156 5 警告 Maxthon - Maxthon における制限された情報に他のドメインからアクセスされる脆弱性 - CVE-2006-6985 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192157 5 警告 More Quick Tools - GreenBrowser における他ドメインから制限された情報にアクセスされる脆弱性 - CVE-2006-6984 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192158 5 警告 myweb4net - MYweb4net Browser における他のドメインから制限された情報にアクセスされる脆弱性 - CVE-2006-6983 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192159 2.6 注意 magnatune.com - Amarok の magnatune.com アルバムブラウザにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6980 2012-09-25 15:36 2007-02-8 Show GitHub Exploit DB Packet Storm
192160 7.5 危険 headstart solutions - Headstart Solutions の DeskPRO における ディレクトリ内のファイルを一覧される脆弱性 - CVE-2006-6974 2012-09-25 15:36 2007-02-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 20, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
711 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in falldeaf WP ViewSTL allows DOM-Based XSS.This issue affects WP ViewSTL: from n/a through 1.0. CWE-79
Cross-site Scripting
CVE-2025-22742 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
712 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in TechnoWich WP ULike allows Stored XSS.This issue affects WP ULike: from n/a through 4.7.6. CWE-79
Cross-site Scripting
CVE-2025-22738 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
713 - - - Missing Authorization vulnerability in MagePeople Team WpTravelly allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WpTravelly: from n/a through 1.8.5. CWE-862
 Missing Authorization
CVE-2025-22737 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
714 - - - Incorrect Privilege Assignment vulnerability in WPExperts User Management allows Privilege Escalation.This issue affects User Management: from n/a through 1.2. CWE-266
 Incorrect Privilege Assignment
CVE-2025-22736 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
715 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Data443 Posts Footer Manager allows Stored XSS.This issue affects Posts Footer Manager: from n/a … CWE-79
Cross-site Scripting
CVE-2025-22734 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
716 - - - Cross-Site Request Forgery (CSRF) vulnerability in silverplugins217 Build Private Store For Woocommerce allows Cross Site Request Forgery.This issue affects Build Private Store For Woocommerce: from … CWE-352
 Origin Validation Error
CVE-2025-22731 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
717 - - - Missing Authorization vulnerability in Infomaniak Staff VOD Infomaniak allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects VOD Infomaniak: from n/a through 1.5.… CWE-862
 Missing Authorization
CVE-2025-22729 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
718 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MojofyWP Product Carousel For WooCommerce – WoorouSell allows Stored XSS.This issue affects Produ… CWE-79
Cross-site Scripting
CVE-2025-22724 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
719 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NCiphers SEO Bulk Editor allows Stored XSS.This issue affects SEO Bulk Editor: from n/a through 1… CWE-79
Cross-site Scripting
CVE-2025-22587 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm
720 - - - Server-Side Request Forgery (SSRF) vulnerability in Faizaan Gagan Course Migration for LearnDash allows Server Side Request Forgery.This issue affects Course Migration for LearnDash: from 1.0.2 throu… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-22346 2025-01-16 01:15 2025-01-16 Show GitHub Exploit DB Packet Storm