Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 18, 2024, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193421 7.5 危険 fsp - fsplib の fsplib.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-3962 2012-06-26 15:54 2007-07-23 Show GitHub Exploit DB Packet Storm
193422 5 警告 fsp - fsplib の fsplib.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3961 2012-06-26 15:54 2007-07-23 Show GitHub Exploit DB Packet Storm
193423 9.3 危険 アップル - Apple Safari などの PCRE ライブラリにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-3944 2012-06-26 15:54 2007-07-23 Show GitHub Exploit DB Packet Storm
193424 7.5 危険 adaptive business design - Infinite Responder における SQL インジェクションの脆弱性 - CVE-2007-3943 2012-06-26 15:54 2007-07-20 Show GitHub Exploit DB Packet Storm
193425 7.5 危険 a-shop - A-shop における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-3937 2012-06-26 15:54 2007-07-20 Show GitHub Exploit DB Packet Storm
193426 6.4 警告 a-shop - A-shop の admin/filebrowser.asp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-3936 2012-06-26 15:54 2007-07-20 Show GitHub Exploit DB Packet Storm
193427 7.5 危険 bbs - BBS E-Market の postscript/postscript.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3934 2012-06-26 15:54 2007-07-20 Show GitHub Exploit DB Packet Storm
193428 7.8 危険 シスコシステムズ - Cisco WAE アプライアンスで使用される Cisco WAAS の CIFS の最適化におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3923 2012-06-26 15:54 2007-07-18 Show GitHub Exploit DB Packet Storm
193429 3.3 注意 GForge Group - gforge における任意のファイルを短縮される脆弱性 CWE-59
リンク解釈の問題
CVE-2007-3921 2012-06-26 15:54 2007-11-8 Show GitHub Exploit DB Packet Storm
193430 4.3 警告 GForge Group - GForge の account/verify.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-3918 2012-06-26 15:54 2007-10-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 18, 2024, 4:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1621 7.1 HIGH
Local
samsung android Improper input validation in Settings Suggestions prior to SMR Nov-2024 Release 1 allows local attackers to launch privileged activities. NVD-CWE-noinfo
CVE-2024-49401 2024-11-13 01:10 2024-11-6 Show GitHub Exploit DB Packet Storm
1622 7.1 HIGH
Local
samsung android Incorrect default permissions in Crane prior to SMR Nov-2024 Release 1 allows local attackers to access files with phone privilege. CWE-276
Incorrect Default Permissions 
CVE-2024-34679 2024-11-13 01:09 2024-11-6 Show GitHub Exploit DB Packet Storm
1623 4.6 MEDIUM
Physics
samsung android Improper access control in Dex Mode prior to SMR Nov-2024 Release 1 allows physical attackers to temporarily access to unlocked screen. NVD-CWE-noinfo
CVE-2024-34675 2024-11-13 01:08 2024-11-6 Show GitHub Exploit DB Packet Storm
1624 4.6 MEDIUM
Physics
samsung android Improper access control in Contacts prior to SMR Nov-2024 Release 1 allows physical attackers to access data across multiple user profiles. NVD-CWE-noinfo
CVE-2024-34674 2024-11-13 01:08 2024-11-6 Show GitHub Exploit DB Packet Storm
1625 3.3 LOW
Local
samsung android Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate. CWE-922
 Insecure Storage of Sensitive Information
CVE-2024-34677 2024-11-13 01:07 2024-11-6 Show GitHub Exploit DB Packet Storm
1626 5.5 MEDIUM
Local
samsung android Use of implicit intent for sensitive communication in WlanTest prior to SMR Nov-2024 Release 1 allows local attackers to get sensitive information. NVD-CWE-Other
CVE-2024-34680 2024-11-13 01:04 2024-11-6 Show GitHub Exploit DB Packet Storm
1627 - - - Improper Privilege Management vulnerability in Nomysoft Informatics Nomysem allows Collect Data as Provided by Users.This issue affects Nomysem: before 13.10.2024. CWE-269
 Improper Privilege Management
CVE-2024-8074 2024-11-13 00:48 2024-11-13 Show GitHub Exploit DB Packet Storm
1628 - - - The NVMe driver queue processing is vulernable to guest-induced infinite loops. - CVE-2024-51566 2024-11-13 00:48 2024-11-13 Show GitHub Exploit DB Packet Storm
1629 - - - The hda driver is vulnerable to a buffer over-read from a guest-controlled value. - CVE-2024-51565 2024-11-13 00:48 2024-11-13 Show GitHub Exploit DB Packet Storm
1630 - - - A guest can trigger an infinite loop in the hda audio driver. - CVE-2024-51564 2024-11-13 00:48 2024-11-13 Show GitHub Exploit DB Packet Storm