Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193821 4.6 警告 OpenBSD
NetBSD
- OpenBSD などの製品で使用される systrace_preprepl 関数における整数オーバーフローの脆弱性 - CVE-2006-5218 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193822 7.5 危険 Invision Power Services, Inc - Invision Gallery における SQL インジェクションの脆弱性 - CVE-2006-5206 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193823 5 警告 Invision Power Services, Inc - Invision Gallery におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5205 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193824 2.1 注意 Invision Power Services, Inc - IPB の action_admin/member.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5204 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
193825 5.1 警告 Invision Power Services, Inc - IPB における SQL コマンドを実行される脆弱性 - CVE-2006-5203 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193826 5 警告 シスコシステムズ (Linksys) - Linksys WRT54g における任意の設定を変更される脆弱性 - CVE-2006-5202 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193827 5 警告 pdshoppro - PDshopPro におけるデータベースをダウンロードされる脆弱性 - CVE-2006-5197 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193828 7.8 危険 Motorola Solutions, Inc - Motorola SURFboard SB4200 Cable Modem におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5196 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193829 4.3 警告 net2ftp - net2ftp の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5194 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193830 4.3 警告 osCommerce - osCommerce Milestone におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5190 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 4.3 MEDIUM
Network
- - A vulnerability has been found in CmsEasy 7.7.7.9 and classified as problematic. Affected by this vulnerability is the function deleteimg_action in the library lib/admin/image_admin.php. The manipula… CWE-22
Path Traversal
CVE-2025-1336 2025-02-16 18:15 2025-02-16 Show GitHub Exploit DB Packet Storm
992 3.3 LOW
Local
- - A vulnerability classified as problematic was found in RT-Thread up to 5.1.0. Affected by this vulnerability is the function sys_device_close/sys_device_control/sys_device_find/sys_device_init/sys_de… - CVE-2025-1115 2025-02-16 18:15 2025-02-8 Show GitHub Exploit DB Packet Storm
993 4.3 MEDIUM
Network
- - A vulnerability, which was classified as problematic, was found in CmsEasy 7.7.7.9. Affected is the function deleteimg_action in the library lib/admin/file_admin.php. The manipulation of the argument… CWE-22
Path Traversal
CVE-2025-1335 2025-02-16 13:15 2025-02-16 Show GitHub Exploit DB Packet Storm
994 - - - DataSourceResource.java in the SpagoBI API support in Knowage Server in KNOWAGE before 8.1.30 does not ensure that java:comp/env/jdbc/ occurs at the beginning of a JNDI Name. - CVE-2024-57971 2025-02-16 13:15 2025-02-16 Show GitHub Exploit DB Packet Storm
995 2.4 LOW
Network
- - A vulnerability has been found in FastCMS up to 0.1.5 and classified as problematic. This vulnerability affects unknown code of the file /fastcms.html#/template/menu of the component Template Menu. T… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-1332 2025-02-16 10:15 2025-02-16 Show GitHub Exploit DB Packet Storm
996 - - - StrongKey FIDO Server before 4.15.1 treats a non-discoverable (namedcredential) flow as a discoverable transaction. - CVE-2025-26788 2025-02-16 01:15 2025-02-14 Show GitHub Exploit DB Packet Storm
997 - - - The Web GUI configuration panel of Hirsch (formerly Identiv and Viscount) Enterphone MESH through 2024 ships with default credentials (username freedom, password viscount). The administrator is not p… - CVE-2025-26793 2025-02-16 00:15 2025-02-16 Show GitHub Exploit DB Packet Storm
998 5.4 MEDIUM
Network
- - The Responsive Plus – Starter Templates, Advanced Features and Customizer Settings for Responsive Theme plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and in… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-13834 2025-02-16 00:15 2025-02-16 Show GitHub Exploit DB Packet Storm
999 6.5 MEDIUM
Network
- - Bit Assist plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.5.2 via the fileID Parameter. This makes it possible for authenticated attackers, with Subscrib… CWE-23
 Relative Path Traversal
CVE-2025-0822 2025-02-15 22:15 2025-02-15 Show GitHub Exploit DB Packet Storm
1000 6.5 MEDIUM
Network
- - The WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter i… CWE-89
SQL Injection
CVE-2024-13500 2025-02-15 21:15 2025-02-15 Show GitHub Exploit DB Packet Storm