Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 1, 2025, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193761 3.5 注意 gameis - Carom3D の LAN ゲーム機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-2173 2012-06-26 16:10 2009-06-23 Show GitHub Exploit DB Packet Storm
193762 4.3 警告 dream - Radio and TV Player addon for vBulletin の forum/radioandtv.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2172 2012-06-26 16:10 2009-06-23 Show GitHub Exploit DB Packet Storm
193763 9.3 危険 EdrawSoft - Edraw PDF Viewer コンポーネントの pdfviewer.ocx における任意のファイルを作成される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2169 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193764 7.5 危険 egyplus - EgyPlus 7ammel の cpanel/login.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-2168 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193765 6.8 警告 egyplus - EgyPlus 7ammel の cpanel/login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2167 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193766 5 警告 adaptweb - AdaptWeb の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2151 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193767 6.8 警告 campusvirtualcomputrade - Campus Virtual-LMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-2150 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193768 4.3 警告 campusvirtualcomputrade - Campus Virtual-LMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2149 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193769 7.5 危険 campusvirtualcomputrade - Campus Virtual-LMS の news/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2148 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
193770 7.5 危険 WordPress.org
firestats
edgewall
- WordPress の FireStats プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2144 2012-06-26 16:10 2009-06-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 1, 2025, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
31 - - - Missing Authorization vulnerability in StoreApps Smart Manager.This issue affects Smart Manager: from n/a through 8.45.0. New CWE-862
 Missing Authorization
CVE-2024-49687 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
32 - - - Missing Authorization vulnerability in Fatcat Apps Landing Page Cat.This issue affects Landing Page Cat: from n/a through 1.7.4. New CWE-862
 Missing Authorization
CVE-2024-49686 2024-12-31 23:15 2024-12-31 Show GitHub Exploit DB Packet Storm
33 - - - Incorrect Privilege Assignment vulnerability in AI Magic allows Privilege Escalation.This issue affects AI Magic: from n/a through 1.0.4. New CWE-266
 Incorrect Privilege Assignment
CVE-2024-56205 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
34 - - - Incorrect Privilege Assignment vulnerability in Mike Leembruggen Simple Dashboard allows Privilege Escalation.This issue affects Simple Dashboard: from n/a through 2.0. New CWE-266
 Incorrect Privilege Assignment
CVE-2024-56071 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
35 - - - Deserialization of Untrusted Data vulnerability in Azzaroco WP SuperBackup.This issue affects WP SuperBackup: from n/a through 2.3.3. New CWE-502
 Deserialization of Untrusted Data
CVE-2024-56068 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
36 - - - Missing Authorization vulnerability in Azzaroco WP SuperBackup allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP SuperBackup: from n/a through 2.3.3. New CWE-862
 Missing Authorization
CVE-2024-56067 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
37 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Azzaroco WP SuperBackup allows Upload a Web Shell to a Web Server.This issue affects WP SuperBackup: from n/a through 2.3.3. New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-56064 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
38 - - - Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS allows Upload a Web Shell to a Web Server.This issue affects WPLMS: from n/a through 1.9.9. New CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-56046 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
39 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS allows SQL Injection.This issue affects WPLMS: from n/a before 1.9.9.5.3. New CWE-89
SQL Injection
CVE-2024-56042 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm
40 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes VibeBP allows SQL Injection.This issue affects VibeBP: from n/a before 1.9.9.5.1. New CWE-89
SQL Injection
CVE-2024-56041 2024-12-31 22:15 2024-12-31 Show GitHub Exploit DB Packet Storm