Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 24, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192261 10 危険 マイクロソフト - Microsoft Windows 2000 などの MFC コンポーネントにおけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1512 2012-09-25 16:47 2007-03-20 Show GitHub Exploit DB Packet Storm
192262 7.5 危険 particle blogger - Particle Blogger の post.php における SQL インジェクションの脆弱性 - CVE-2007-1510 2012-09-25 16:47 2007-03-20 Show GitHub Exploit DB Packet Storm
192263 4.3 警告 holtstraeter - Sascha Schroeder krypt の enkrypt.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1509 2012-09-25 16:47 2007-03-20 Show GitHub Exploit DB Packet Storm
192264 4.3 警告 JBMC Software - DirectAdmin の CMD_USER_STATS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1508 2012-09-25 16:47 2007-03-20 Show GitHub Exploit DB Packet Storm
192265 7.5 危険 OpenAFS - OpenAFS のデフォルト設定における権限を取得される脆弱性 CWE-16
環境設定
CVE-2007-1507 2012-09-25 16:47 2007-03-19 Show GitHub Exploit DB Packet Storm
192266 4.3 警告 オラクル - Oracle Portal の PORTAL.wwv_main.render_warning_screen におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1506 2012-09-25 16:47 2007-03-19 Show GitHub Exploit DB Packet Storm
192267 9.3 危険 マカフィー - McAfee ePO などの製品におけるスタックベースのオーバーフローの脆弱性 - CVE-2007-1498 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192268 6.8 警告 nukescripts - NukeSentinel におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1494 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192269 7.5 危険 nukescripts - NukeSentinel の nukesentinel.php における任意の SQL コマンドを実行される脆弱性 - CVE-2007-1493 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192270 7.1 危険 マイクロソフト - Microsoft Windows XP の winmm.dll におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1492 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 25, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
871 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2021-0323 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
872 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2020-0402 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
873 3.3 LOW
Local
termius termius An issue in termius before v.9.9.0 allows a local attacker to execute arbitrary code via a crafted script to the DYLD_INSERT_LIBRARIES component. CWE-426
 Untrusted Search Path
CVE-2024-55503 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
874 3.3 LOW
Local
phiewer phiewer In Phiewer 4.1.0, a dylib injection leads to Command Execution which allow attackers to inject dylib file potentially leading to remote control and unauthorized access to sensitive user data. CWE-426
 Untrusted Search Path
CVE-2024-53407 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
875 6.5 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, and including, 1.4.8 due to insufficient escaping … CWE-89
SQL Injection
CVE-2024-12615 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
876 4.3 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'pms_save_setting' and 'post_new_pass' AJAX actions in all versi… CWE-862
 Missing Authorization
CVE-2024-12614 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
877 7.5 HIGH
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to, and including, 1.4.8 due to insufficient escaping… CWE-89
SQL Injection
CVE-2024-12613 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
878 - - - KaTeX is a fast, easy-to-use JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressions with `renderToString` could encounter malicious input usin… CWE-116
 Improper Encoding or Escaping of Output
CVE-2025-23207 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm
879 6.3 MEDIUM
Network
- - A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/admin/edit_member.php. The manipulation o… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0541 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm
880 - - - OtCMS <=V7.46 is vulnerable to Server-Side Request Forgery (SSRF) in /admin/read.php, which can Read system files arbitrarily. - CVE-2024-57252 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm