Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193651 7.8 危険 l2tpns
Debian
- l2tpns の cluster.c の cluster_process_heartbeat 関数におけるバッファオーバーフローの脆弱性 - CVE-2006-5873 2012-09-25 15:36 2006-12-8 Show GitHub Exploit DB Packet Storm
193652 7.5 危険 otterware - inc/session.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5863 2012-09-25 15:36 2006-11-10 Show GitHub Exploit DB Packet Storm
193653 4.6 警告 network administration visualized - NAV 用の Web インターフェースのセッションメカニズムにおけるディレクトリトラバーサルの脆弱性 - CVE-2006-5862 2012-09-25 15:36 2006-11-10 Show GitHub Exploit DB Packet Storm
193654 10 危険 IBM - IBM TSM におけるバッファオーバーフローの脆弱性 - CVE-2006-5855 2012-09-25 15:36 2006-12-6 Show GitHub Exploit DB Packet Storm
193655 7.5 危険 Novell - Novell Netware Client の nwspool.dll におけるバッファオーバーフローの脆弱性 - CVE-2006-5854 2012-09-25 15:36 2006-12-3 Show GitHub Exploit DB Packet Storm
193656 6.8 警告 immediacy - Immediacy .NET CMS の logon.aspx におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5853 2012-09-25 15:36 2006-11-9 Show GitHub Exploit DB Packet Storm
193657 4.6 警告 Openbase International - OpenBase SQL の openexec における権限を取得される脆弱性 - CVE-2006-5852 2012-09-25 15:36 2006-11-9 Show GitHub Exploit DB Packet Storm
193658 2.1 注意 Openbase International - OpenBase SQL の openexec における任意のファイルを作成される脆弱性 - CVE-2006-5851 2012-09-25 15:36 2006-11-9 Show GitHub Exploit DB Packet Storm
193659 7.5 危険 irayoblog - IrayoBlog の inc/irayofuncs.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5849 2012-09-25 15:36 2006-11-9 Show GitHub Exploit DB Packet Storm
193660 5.1 警告 newp - NewP News Publication System における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5838 2012-09-25 15:36 2006-11-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1041 - - - An issue was discovered in the Winbox service of MikroTik RouterOS v6.43 through v7.16.1. A discrepancy in response times between connection attempts made with a valid username and those with an inva… - CVE-2024-54772 2025-02-13 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1042 - - - An issue in AnkiDroid Android Application v2.17.6 allows attackers to retrieve internal files from the /data/data/com.ichi2.anki/ directory and save it into publicly available storage. - CVE-2024-44336 2025-02-13 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1043 - - - In hostapd 2.10 and earlier, the PKEX code remains active even after a successful PKEX association. An attacker that successfully bootstrapped public keys with another entity using PKEX in the past, … - CVE-2022-37660 2025-02-13 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1044 - - - DNNGo xBlog v6.5.0 was discovered to contain a SQL injection vulnerability via the Categorys parameter at /DNNGo_xBlog/Resource_Service.aspx. - CVE-2024-55212 2025-02-13 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1045 - - - An issue in the BdApiUtil driver of Baidu Antivirus v5.2.3.116083 allows attackers to terminate arbitrary process via executing a BYOVD (Bring Your Own Vulnerable Driver) attack. - CVE-2024-51324 2025-02-13 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1046 5.3 MEDIUM
Network
- - A vulnerability was found in ywoa up to 2024.07.03. It has been declared as critical. This vulnerability affects unknown code of the file /oa/setup/setup.jsp. The manipulation leads to improper autho… CWE-285
CWE-266
Improper Authorization
 Incorrect Privilege Assignment
CVE-2025-1226 2025-02-13 06:15 2025-02-13 Show GitHub Exploit DB Packet Storm
1047 - - - A problem with the network isolation mechanism of the Palo Alto Networks Cortex XDR Broker VM allows attackers unauthorized access to Docker containers from the host network used by Broker VM. This m… - CVE-2025-0113 2025-02-13 06:15 2025-02-13 Show GitHub Exploit DB Packet Storm
1048 - - - A command injection vulnerability in the Palo Alto Networks PAN-OS OpenConfig plugin enables an authenticated administrator with the ability to make gNMI requests to the PAN-OS management web interfa… - CVE-2025-0110 2025-02-13 06:15 2025-02-13 Show GitHub Exploit DB Packet Storm
1049 - - - An unauthenticated file deletion vulnerability in the Palo Alto Networks PAN-OS management web interface enables an unauthenticated attacker with network access to the management web interface to del… - CVE-2025-0109 2025-02-13 06:15 2025-02-13 Show GitHub Exploit DB Packet Storm
1050 7.8 HIGH
Local
- - An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo Vantage on SMB notebook devices which could allow a local attacker to elevate privileges on the system. Thi… - CVE-2024-12673 2025-02-13 06:15 2025-02-13 Show GitHub Exploit DB Packet Storm