Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Sept. 23, 2024, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193141 4.3 警告 Opera Software ASA - Opera における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4043 2012-03-27 18:42 2010-10-12 Show GitHub Exploit DB Packet Storm
193142 6.8 警告 ヒューレット・パッカード - HP Insight Control Performance Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-4032 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
193143 8 危険 ヒューレット・パッカード - HP Insight Control Performance Management における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-4031 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
193144 4.3 警告 ヒューレット・パッカード - HP Insight Control Performance Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4030 2012-03-27 18:42 2010-10-28 Show GitHub Exploit DB Packet Storm
193145 7.5 危険 ヒューレット・パッカード - HP Storage Essentials における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-4029 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
193146 7.5 危険 ヒューレット・パッカード - HP LoadRunner の LoadRunner Web Tours におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-4028 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
193147 5.6 警告 ヒューレット・パッカード - HP Palm webOS のカメラアプリケーションにおける任意のファイルを上書される脆弱性 CWE-noinfo
情報不足
CVE-2010-4027 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
193148 6.2 警告 ヒューレット・パッカード - HP Palm webOS のサービス API における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-4026 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
193149 9.3 危険 ヒューレット・パッカード - HP Palm webOS の Doc Viewer における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-4025 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
193150 6.8 警告 ヒューレット・パッカード - HP Insight Control Power Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-4024 2012-03-27 18:42 2010-10-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Sept. 23, 2024, 8:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1671 6.5 MEDIUM
Network
mongodb mongodb A user authorized to perform database queries may trigger denial of service by issuing specially crafted query contain a type of regex. This issue affects MongoDB Server v3.6 versions prior to 3.6.21… NVD-CWE-Other
CVE-2020-7929 2024-09-17 05:15 2021-03-2 Show GitHub Exploit DB Packet Storm
1672 6.8 MEDIUM
Adjacent
mongodb libmongocrypt A specific version of the Node.js mongodb-client-encryption module does not perform correct validation of the KMS server’s certificate. This vulnerability in combination with a privileged network pos… CWE-295
Improper Certificate Validation 
CVE-2021-20327 2024-09-17 05:15 2021-02-26 Show GitHub Exploit DB Packet Storm
1673 4.9 MEDIUM
Network
ibm security_verify_information_queue IBM Security Verify Information Queue 1.0.6 and 1.0.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 196184. CWE-326
Inadequate Encryption Strength
CVE-2021-20406 2024-09-17 05:15 2021-02-13 Show GitHub Exploit DB Packet Storm
1674 9.8 CRITICAL
Network
sonicwall sonicos An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the fi… NVD-CWE-noinfo
CVE-2024-40766 2024-09-17 04:48 2024-08-23 Show GitHub Exploit DB Packet Storm
1675 8.8 HIGH
Network
xwiki pro_macros Pro Macros provides XWiki rendering macros. Missing escaping in the Viewpdf macro allows any user with view right on the `CKEditor.HTMLConverter` page or edit or comment right on any page to perform … CWE-74
Injection
CVE-2024-42489 2024-09-17 04:46 2024-08-13 Show GitHub Exploit DB Packet Storm
1676 9.8 CRITICAL
Network
atlassian confluence_server
confluence_data_center
Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Cent… NVD-CWE-noinfo
CVE-2023-22515 2024-09-17 04:46 2023-10-4 Show GitHub Exploit DB Packet Storm
1677 7.8 HIGH
Local
apple ipados
iphone_os
watchos
A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1. A maliciously crafted attachment may result in arbitrary code execution. Appl… NVD-CWE-noinfo
CVE-2023-41061 2024-09-17 04:46 2023-09-8 Show GitHub Exploit DB Packet Storm
1678 9.8 CRITICAL
Network
zohocorp manageengine_access_manager_plus
manageengine_ad360
manageengine_adaudit_plus
manageengine_admanager_plus
manageengine_adselfservice_plus
manageengine_analytics_plus
manageengine_as…
Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because th… NVD-CWE-noinfo
CVE-2022-47966 2024-09-17 04:45 2023-01-19 Show GitHub Exploit DB Packet Storm
1679 5.5 MEDIUM
Local
nvidia cuda_toolkit NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm, where an attacker can cause an out-of-bounds read issue by deceiving a user into reading a malformed ELF file. A successful… CWE-125
Out-of-bounds Read
CVE-2024-0102 2024-09-17 04:37 2024-08-9 Show GitHub Exploit DB Packet Storm
1680 8.8 HIGH
Local
nvidia jetson_linux NVIDIA Jetson Linux contains a vulnerability in NvGPU where error handling paths in GPU MMU mapping code fail to clean up a failed mapping attempt. A successful exploit of this vulnerability may lead… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2024-0108 2024-09-17 04:27 2024-08-9 Show GitHub Exploit DB Packet Storm