Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 19, 2024, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192591 6.8 警告 OpenBSD
アップル
FreeBSD
dragonflybsd
- OpenBSD で使用される PRNG アレゴリズムにおける重要な値を推測される脆弱性 CWE-DesignError
CVE-2008-1147 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192592 6.8 警告 OpenBSD - OpenBSD で使用される PRNG アレゴリズムにおける重要な値を推測される脆弱性 CWE-DesignError
CVE-2008-1146 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192593 3.7 注意 RXVT project - rxvt における X11 接続をハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1142 2012-06-26 15:55 2008-04-7 Show GitHub Exploit DB Packet Storm
192594 4.9 警告 deslock - DESlock+ の DLMFENC.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1141 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192595 7.2 危険 deslock - DESlock+ の DLMFDISK.sys における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1140 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192596 7.2 危険 deslock - DESlock+ における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1139 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192597 4.9 警告 deslock - DESlock+ の DLMFENC.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-1138 2012-06-26 15:55 2008-03-4 Show GitHub Exploit DB Packet Storm
192598 6 警告 crytek - Crysis の cryactio 関数におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2008-1127 2012-06-26 15:55 2008-03-3 Show GitHub Exploit DB Packet Storm
192599 6.8 警告 barryvan compo - Barryvan Compo Manager の main.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1126 2012-06-26 15:55 2008-03-3 Show GitHub Exploit DB Packet Storm
192600 7.5 危険 dream4 - Koobi Pro の downloads モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1122 2012-06-26 15:55 2008-03-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 19, 2024, 4:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2351 5.8 MEDIUM
Network
hashicorp consul A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules. CWE-22
Path Traversal
CVE-2024-10005 2024-11-9 03:10 2024-10-31 Show GitHub Exploit DB Packet Storm
2352 7.5 HIGH
Adjacent
hp poly_tc8_firmware
poly_tc10_firmware
poly_studio_g7500_firmware
poly_studio_x30_firmware
poly_studio_x50_firmware
poly_studio_x70_firmware
poly_studio_x52_firmware
poly_studio_g6…
A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly sanitize user input. The exploitation of this vulnerability is dependent on a … CWE-77
Command Injection
CVE-2024-9579 2024-11-9 03:08 2024-11-6 Show GitHub Exploit DB Packet Storm
2353 7.8 HIGH
Local
adobe substance_3d_painter Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o… CWE-787
 Out-of-bounds Write
CVE-2024-49522 2024-11-9 03:06 2024-11-6 Show GitHub Exploit DB Packet Storm
2354 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nfsd: cancel nfsd_shrinker_work using sync mode in nfs4_state_shutdown_net In the normal case, when we excute `echo 0 > /proc/fs/… CWE-416
 Use After Free
CVE-2024-50121 2024-11-9 03:05 2024-11-6 Show GitHub Exploit DB Packet Storm
2355 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: smb: client: Handle kstrdup failures for passwords In smb3_reconfigure(), after duplicating ctx->password and ctx->password2 with… NVD-CWE-noinfo
CVE-2024-50120 2024-11-9 03:04 2024-11-6 Show GitHub Exploit DB Packet Storm
2356 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: cifs: fix warning when destroy 'cifs_io_request_pool' There's a issue as follows: WARNING: CPU: 1 PID: 27826 at mm/slub.c:4698 fr… NVD-CWE-noinfo
CVE-2024-50119 2024-11-9 03:03 2024-11-6 Show GitHub Exploit DB Packet Storm
2357 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: reject ro->rw reconfiguration if there are hard ro requirements [BUG] Syzbot reports the following crash: BTRFS info (d… CWE-476
 NULL Pointer Dereference
CVE-2024-50118 2024-11-9 03:02 2024-11-6 Show GitHub Exploit DB Packet Storm
2358 2.7 LOW
Network
grafana grafana Organization admins can delete pending invites created in an organization they are not part of. CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-10452 2024-11-9 02:59 2024-10-30 Show GitHub Exploit DB Packet Storm
2359 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/amd: Guard against bad data for ATIF ACPI method If a BIOS provides bad data in response to an ATIF method call this causes a… CWE-476
 NULL Pointer Dereference
CVE-2024-50117 2024-11-9 02:53 2024-11-6 Show GitHub Exploit DB Packet Storm
2360 - - - Inconsistent <plaintext> tag parsing allows for XSS in Froala WYSIWYG editor 4.3.0 and earlier. - CVE-2024-51434 2024-11-9 02:35 2024-11-8 Show GitHub Exploit DB Packet Storm