Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193741 4.3 警告 phpadsnew
phppgads
- phpAdsNew などの製品で使用される lib-history.inc.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5515 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
193742 2.6 注意 jaxultrabb - JUBB の delete.php における任意の Web スクリプトなどを挿入される脆弱性 - CVE-2006-5511 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
193743 7.5 危険 middlebury college - Segue CMS の themes/program/themesettings.inc.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5498 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
193744 7.5 危険 middlebury college - Segue CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5497 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
193745 4 警告 Maarch - Maerys Archive における重要な情報を取得される脆弱性 - CVE-2006-5492 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
193746 7.5 危険 middlebury college - Segue CMS における SQL インジェクションの脆弱性 - CVE-2006-5490 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
193747 10 危険 marshal - Marshal MailMarshal SMTP などにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2006-5487 2012-09-25 15:36 2006-11-10 Show GitHub Exploit DB Packet Storm
193748 5 警告 Novell - Novell eDirectory の NCP Engine におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5479 2012-09-25 15:36 2006-10-24 Show GitHub Exploit DB Packet Storm
193749 7.5 危険 Novell - Novell eDirectory および Novell NetMail におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-5478 2012-09-25 15:36 2006-10-24 Show GitHub Exploit DB Packet Storm
193750 7.5 危険 OneOrZero - OneOrZero Helpdesk の "forgot password" 関数におけるアクセス権を取得される脆弱性 - CVE-2006-5474 2012-09-25 15:36 2006-10-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
811 6.7 MEDIUM
Local
- - A flaw was found in grub2. A specially crafted JPEG file can cause the JPEG parser of grub2 to incorrectly check the bounds of its internal buffers, resulting in an out-of-bounds write. The possibili… CWE-787
 Out-of-bounds Write
CVE-2024-45774 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
812 - - - CIE.AspNetCore.Authentication is an AspNetCore Remote Authenticator for CIE 3.0. Authentication using Spid and CIE is based on the SAML2 standard which provides two entities: 1. Identity Provider (ID… CWE-287
Improper Authentication
CVE-2025-24895 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
813 - - - SPID.AspNetCore.Authentication is an AspNetCore Remote Authenticator for SPID. Authentication using Spid and CIE is based on the SAML2 standard which provides two entities: Identity Provider (IDP): t… CWE-287
Improper Authentication
CVE-2025-24894 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
814 - - - smartbanner.js is a customizable smart app banner for iOS and Android. Prior to version 1.14.1, clicking on smartbanner `View` link and navigating to 3rd party page leaves `window.opener` exposed. It… CWE-79
CWE-601
Cross-site Scripting
Open Redirect
CVE-2025-25300 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
815 - - - Foundry Artifacts was found to be vulnerable to a Denial Of Service attack due to disk being potentially filled up based on an user supplied argument (size). - CVE-2024-49589 2025-02-19 04:15 2025-02-19 Show GitHub Exploit DB Packet Storm
816 5.4 MEDIUM
Network
jeremyshapiro fusedesk The FuseDesk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusedesk_newcase' shortcode in all versions up to, and including, 6.6.1 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-13459 2025-02-19 04:11 2025-02-12 Show GitHub Exploit DB Packet Storm
817 7.5 HIGH
Network
wpfactory customer_email_verification_for_woocommerce The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 2.9.5. This is due to the presence of a shortcode tha… NVD-CWE-noinfo
CVE-2024-13528 2025-02-19 03:53 2025-02-12 Show GitHub Exploit DB Packet Storm
818 6.1 MEDIUM
Network
anisha job_recruitment A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the file /_parse/load_user-profile.php. The manipulation … CWE-79
Cross-site Scripting
CVE-2025-1190 2025-02-19 03:47 2025-02-12 Show GitHub Exploit DB Packet Storm
819 7.5 HIGH
Network
wiselyhub js_help_desk The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.8.8 via the 'jssupportticketdat… NVD-CWE-noinfo
CVE-2024-13606 2025-02-19 03:46 2025-02-13 Show GitHub Exploit DB Packet Storm
820 6.1 MEDIUM
Network
tangiblewp listivo The Listivo - Classified Ads WordPress Theme theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and including, 2.3.67 due to insufficient… CWE-79
Cross-site Scripting
CVE-2024-13867 2025-02-19 03:41 2025-02-13 Show GitHub Exploit DB Packet Storm