Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193901 5 警告 John Lim - PHP 用の John Lim ADOdb Library 内の Date Library における重要な情報を取得される脆弱性 - CVE-2006-4976 2012-09-25 15:36 2006-09-24 Show GitHub Exploit DB Packet Storm
193902 7.5 危険 Ipswitch, Inc. - Ipswitch WS_FTP LE におけるバッファオーバーフローの脆弱性 - CVE-2006-4974 2012-09-25 15:36 2006-09-24 Show GitHub Exploit DB Packet Storm
193903 5.1 警告 mybulletinboard - MyBB の archive/index.php/forum-4.html におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4972 2012-09-25 15:36 2006-09-24 Show GitHub Exploit DB Packet Storm
193904 5 警告 mybulletinboard - MyBB における重要な情報を取得される脆弱性 - CVE-2006-4971 2012-09-25 15:36 2006-09-24 Show GitHub Exploit DB Packet Storm
193905 6.8 警告 nextage - NextAge Cart におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4967 2012-09-25 15:36 2006-09-24 Show GitHub Exploit DB Packet Storm
193906 6.8 警告 neosys - Java 用の Neon WebMail におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4956 2012-09-25 15:36 2006-09-23 Show GitHub Exploit DB Packet Storm
193907 5 警告 neosys - Java 用の Neon WebMail におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4955 2012-09-25 15:36 2006-09-23 Show GitHub Exploit DB Packet Storm
193908 7.5 危険 neosys - Neon WebMail の updateuser サーブレットにおける任意のユーザの情報を変更される脆弱性 - CVE-2006-4954 2012-09-25 15:35 2006-09-23 Show GitHub Exploit DB Packet Storm
193909 7.5 危険 neosys - Neon WebMail における SQL インジェクションの脆弱性 - CVE-2006-4953 2012-09-25 15:35 2006-09-23 Show GitHub Exploit DB Packet Storm
193910 7.5 危険 neosys - Neon WebMail の updatemail サーブレットにおける電子メールメッセージを移動される脆弱性 - CVE-2006-4952 2012-09-25 15:35 2006-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 13, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
741 - - - Weak JWT Secret vulnerabilitiy in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote attackers to generate JWT for privilege escalation. The HMAC secret used for generating tokens is hardc… - CVE-2024-53356 2025-02-8 02:15 2025-02-1 Show GitHub Exploit DB Packet Storm
742 4.3 MEDIUM
Network
- - The WP All Import Pro plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.9.7. This is due to missing nonce validation on the delete_and_edit func… CWE-352
 Origin Validation Error
CVE-2024-9661 2025-02-8 01:15 2025-02-8 Show GitHub Exploit DB Packet Storm
743 - - - A vulnerability, which was classified as problematic, was found in D-Link DIR-823X 240126/240802. This affects the function set_wifi_blacklists of the file /goform/set_wifi_blacklists of the componen… - CVE-2025-1103 2025-02-8 01:15 2025-02-8 Show GitHub Exploit DB Packet Storm
744 - - - A memory leak could occur when a remote peer abruptly closes the socket without sending a GOAWAY notification. Additionally, if an invalid header was detected by nghttp2, causing the connection to be… - CVE-2025-23085 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
745 - - - The Guten Free Options WordPress plugin through 0.9.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used a… - CVE-2024-13492 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
746 - - - The Legull WordPress plugin through 1.2.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high … - CVE-2024-13352 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
747 - - - Incorrect access control in the endpoint /admin/m_delete.php of CodeAstro Complaint Management System v1.0 allows unauthorized attackers to arbitrarily delete complaints via modification of the id pa… - CVE-2024-56889 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
748 - - - An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module and Linkdiscovery module - CVE-2024-57673 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
749 - - - An issue in floodlight v1.2 allows a local attacker to cause a denial of service via the Topology Manager module, Topologylnstance module, Routing module. - CVE-2024-57672 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm
750 - - - In Code-projects Shopping Portal v1.0, the insert-product.php page has an arbitrary file upload vulnerability. - CVE-2024-57668 2025-02-8 01:15 2025-02-7 Show GitHub Exploit DB Packet Storm