Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192981 7.5 危険 Matt Johnston - Dropbear SSH クライアントの dbclient における中間者攻撃を実行される脆弱性 - CVE-2007-1099 2012-09-25 16:47 2007-02-26 Show GitHub Exploit DB Packet Storm
192982 7.8 危険 マイクロソフト - Microsoft Internet Explorer 7 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1094 2012-09-25 16:47 2007-02-26 Show GitHub Exploit DB Packet Storm
192983 10 危険 日立 - NNM におけるサービス運用妨害 (DoS) の脆弱性 CWE-94
コード・インジェクション
CVE-2007-1093 2012-09-25 16:47 2007-02-23 Show GitHub Exploit DB Packet Storm
192984 7.1 危険 マイクロソフト - Microsoft Windows XP および 2003 上で稼働する Explorer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1090 2012-09-25 16:47 2007-02-26 Show GitHub Exploit DB Packet Storm
192985 7.2 危険 IBM - IBM DB2 UDB における UPDATE SQL コマンドを不正に実行される脆弱性 - CVE-2007-1089 2012-09-25 16:47 2007-02-23 Show GitHub Exploit DB Packet Storm
192986 7.2 危険 IBM - IBM DB2 におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1088 2012-09-25 16:47 2007-02-22 Show GitHub Exploit DB Packet Storm
192987 7.2 危険 IBM - IBM DB2 における任意のコードを実行される脆弱性 - CVE-2007-1087 2012-09-25 16:47 2007-02-22 Show GitHub Exploit DB Packet Storm
192988 7.2 危険 IBM - IBM DB2 のバイナリにおける任意のファイルを作成される脆弱性 - CVE-2007-1086 2012-09-25 16:47 2007-02-23 Show GitHub Exploit DB Packet Storm
192989 6.8 警告 Mozilla Foundation - Mozilla Firefox における同一ドメインポリシーを回避される脆弱性 CWE-16
環境設定
CVE-2007-1084 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
192990 10 危険 mcrefer - mcRefer の install.php における任意の PHP コードを実行される脆弱性 - CVE-2007-1073 2012-09-25 16:47 2007-02-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1721 - - - Multiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated attackers to execute arbitrary SQL commands via the (1) user parameter to /api/ma… - CVE-2024-53354 2025-02-8 01:15 2025-02-1 Show GitHub Exploit DB Packet Storm
1722 - - - An authenticated user who has read access to the juju controller model, may construct a remote request to download an arbitrary file from the controller's filesystem. - CVE-2023-0092 2025-02-8 01:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1723 - - - Ubuntu's configuration of gnome-control-center allowed Remote Desktop Sharing to be enabled by default. - CVE-2022-1736 2025-02-8 01:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1724 - - - Users can consume unlimited disk space in /var/crash - CVE-2022-28653 2025-02-8 01:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1725 5.3 MEDIUM
Network
liquidweb event_tickets The Event Tickets and Registration plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.18.1 via the tc-order-id parameter due to missing val… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-13457 2025-02-8 00:34 2025-01-30 Show GitHub Exploit DB Packet Storm
1726 - - - An issue has been discovered in the gitlab-web-ide-vscode-fork component distributed over CDN affecting all versions prior to 1.89.1-1.0.0-dev-20241118094343and used by all versions of GitLab CE/EE s… CWE-79
Cross-site Scripting
CVE-2024-10383 2025-02-8 00:15 2025-02-8 Show GitHub Exploit DB Packet Storm
1727 - - - Insufficient data authenticity verification vulnerability in Janto, versions prior to r12. This allows an unauthenticated attacker to modify the content of emails sent to reset the password. To explo… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2025-1108 2025-02-7 23:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1728 - - - Unverified password change vulnerability in Janto, versions prior to r12. This could allow an unauthenticated attacker to change another user's password without knowing their current password. To exp… CWE-620
 Unverified Password Change
CVE-2025-1107 2025-02-7 23:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1729 9.8 CRITICAL
Network
angeljudesuarez tailoring_management_system A vulnerability classified as critical has been found in itsourcecode Tailoring Management System 1.0. Affected is an unknown function of the file /addpayment.php. The manipulation of the argument id… CWE-89
SQL Injection
CVE-2025-0872 2025-02-7 23:07 2025-01-31 Show GitHub Exploit DB Packet Storm
1730 9.8 CRITICAL
Network
angeljudesuarez tailoring_management_system A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /customeredit.php. The manipul… CWE-89
SQL Injection
CVE-2025-0873 2025-02-7 23:05 2025-01-31 Show GitHub Exploit DB Packet Storm