Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192881 6.8 警告 Horde - Horde Project Horde における任意のファイルを削除される脆弱性 - CVE-2007-1474 2012-09-25 16:47 2007-03-14 Show GitHub Exploit DB Packet Storm
192882 4.3 警告 Horde - Horde Framework の framework/NLS/NLS.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1473 2012-09-25 16:47 2007-03-14 Show GitHub Exploit DB Packet Storm
192883 7.5 危険 orion-blog - Orion-Blog の admin/default.asp における権限を取得され脆弱性 - CVE-2007-1471 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192884 6.8 警告 netsw - LIBFtp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-1470 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192885 4.3 警告 IBM - IBM Rational CQ Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1468 2012-09-25 16:47 2007-03-16 Show GitHub Exploit DB Packet Storm
192886 6.8 警告 Inkscape - Inkscape の whiteboard Jabber プロトコルにおけるフォーマットストリングの脆弱性 - CVE-2007-1464 2012-09-25 16:47 2007-03-21 Show GitHub Exploit DB Packet Storm
192887 6.8 警告 Inkscape - Inkscape におけるフォーマットストリングの脆弱性 - CVE-2007-1463 2012-09-25 16:47 2007-03-21 Show GitHub Exploit DB Packet Storm
192888 4.3 警告 The PHP Group - PHP の ext/filter におけるクロスサイトスクリプティング攻撃を実行される脆弱性 - CVE-2007-1454 2012-09-25 16:47 2007-03-11 Show GitHub Exploit DB Packet Storm
192889 7.5 危険 The PHP Group - PHP のフィルタリングエクステンションにおけるバッファアンダーフローの脆弱性 - CVE-2007-1453 2012-09-25 16:47 2007-03-14 Show GitHub Exploit DB Packet Storm
192890 5 警告 The PHP Group - PHP の FDF サポートにおける Web サイトフィルタを回避される脆弱性 - CVE-2007-1452 2012-09-25 16:47 2007-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1821 8.8 HIGH
Network
mozilla firefox
thunderbird
Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird … CWE-295
Improper Certificate Validation 
CVE-2025-1014 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1822 6.5 MEDIUM
Network
mozilla thunderbird Thunderbird displayed an incorrect sender address if the From field of an email used the invalid group name syntax that is described in CVE-2024-49040. This vulnerability affects Thunderbird < 128.7 … NVD-CWE-noinfo
CVE-2025-0510 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1823 - - - In Apache Cassandra it is possible for a local attacker without access to the Apache Cassandra process or configuration files to manipulate the RMI registry to perform a man-in-the-middle attack an… - CVE-2024-27137 2025-02-7 06:15 2025-02-4 Show GitHub Exploit DB Packet Storm
1824 6.1 MEDIUM
Network
- - IBM Jazz for Service Management 1.1.3 through 1.1.3.23 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI th… CWE-79
Cross-site Scripting
CVE-2024-52892 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1825 - - - 2N Access Commander version 2.1 and prior is vulnerable in default settings to Man In The Middle attack due to not verifying certificates of 2N edge devices. - CVE-2024-47258 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1826 - - - Successful exploitation of this vulnerability could allow an attacker (who needs to have Admin access privileges) to read hardcoded AES passphrase, which may be used for decryption of certain data wi… - CVE-2024-47256 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1827 - - - Specifically crafted payloads sent to the RFID reader could cause DoS of RFID reader. After the device is restarted, it gets back to fully working state. - CVE-2024-13417 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1828 - - - WhoDB is an open source database management tool. In affected versions the application is vulnerable to parameter injection in database connection strings, which allows an attacker to read local file… - CVE-2025-24787 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1829 - - - WhoDB is an open source database management tool. While the application only displays Sqlite3 databases present in the directory `/db`, there is no path traversal prevention in place. This allows an … - CVE-2025-24786 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1830 - - - Cross Site Request Forgery (CSRF) in Users.php in SourceCodester Packers and Movers Management System 1.0 allows attackers to create unauthorized admin accounts via crafted requests sent to an authen… - CVE-2024-57523 2025-02-7 05:15 2025-02-7 Show GitHub Exploit DB Packet Storm