Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194351 4 警告 WordPress.org - WordPress の wp-includes/class-wp-atom-server.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4421 2012-09-19 11:24 2012-09-6 Show GitHub Exploit DB Packet Storm
194352 6.5 警告 WordPress.org - WordPress の xmlrpc.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5106 2012-09-19 11:23 2010-12-8 Show GitHub Exploit DB Packet Storm
194353 6.8 警告 サイバーリンク株式会社 - Power2Go にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-5171 2012-09-19 10:41 2011-12-12 Show GitHub Exploit DB Packet Storm
194354 2.6 注意 マイクロソフト - Windows Phone 7 に SSL サーバ証明書の検証不備の脆弱性 CWE-310
暗号の問題
CVE-2012-2993 2012-09-19 10:39 2012-09-18 Show GitHub Exploit DB Packet Storm
194355 7.5 危険 CoSoSys Ltd - Endpoint Protector 4 の認証機能に脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2994 2012-09-19 10:37 2012-09-18 Show GitHub Exploit DB Packet Storm
194356 3.5 注意 シスコシステムズ - Cisco IOS の SSLVPN の実装におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-DesignError
CVE-2012-3924 2012-09-18 16:57 2012-09-16 Show GitHub Exploit DB Packet Storm
194357 3.5 注意 シスコシステムズ - Cisco IOS の SSLVPN の実装におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2012-3923 2012-09-18 16:56 2012-09-16 Show GitHub Exploit DB Packet Storm
194358 5 警告 シスコシステムズ - 複数の Cisco 製品で使用される Cisco ACE モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-3919 2012-09-18 16:54 2012-09-16 Show GitHub Exploit DB Packet Storm
194359 5 警告 シスコシステムズ - Cisco IOS の DMVPN トンネルの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3915 2012-09-18 16:54 2012-09-16 Show GitHub Exploit DB Packet Storm
194360 6.8 警告 シスコシステムズ - Cisco ISE 3300 シリーズの ISE 管理者ユーザインターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-3908 2012-09-18 16:53 2012-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1281 - - - CtrlPanel is open-source billing software for hosting providers. Prior to version 1.0, a Cross-Site Scripting (XSS) vulnerability exists in the `TicketsController` and `Moderation/TicketsController` … CWE-79
Cross-site Scripting
CVE-2025-25203 2025-02-12 08:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1282 - - - Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution. - CVE-2023-31343 2025-02-12 08:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1283 - - - Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution. - CVE-2023-31342 2025-02-12 08:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1284 8.8 HIGH
Network
microsoft dynamics_365_sales Server-Side Request Forgery (SSRF) in Microsoft Dynamics 365 Sales allows an authorized attacker to elevate privileges over a network. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2025-21177 2025-02-12 07:19 2025-02-7 Show GitHub Exploit DB Packet Storm
1285 5.3 MEDIUM
Network
microsoft edge Microsoft Edge for IOS and Android Spoofing Vulnerability NVD-CWE-noinfo
CVE-2025-21253 2025-02-12 07:18 2025-02-7 Show GitHub Exploit DB Packet Storm
1286 8.8 HIGH
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2025-21279 2025-02-12 07:16 2025-02-7 Show GitHub Exploit DB Packet Storm
1287 4.4 MEDIUM
Local
microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability NVD-CWE-noinfo
CVE-2025-21267 2025-02-12 07:16 2025-02-7 Show GitHub Exploit DB Packet Storm
1288 - - - WinZip 7Z File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of WinZip. User interact… CWE-787
 Out-of-bounds Write
CVE-2025-1240 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1289 - - - GeoNetwork is a catalog application to manage spatially referenced resources. In versions prior to 4.2.10 and 4.4.5, the search end-point response headers contain information about Elasticsearch soft… CWE-200
Information Exposure
CVE-2024-32037 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm
1290 - - - Improper access control in the DRTM firmware could allow a privileged attacker to perform multiple driver initializations, resulting in stack memory corruption that could potentially lead to loss of … - CVE-2023-31331 2025-02-12 07:15 2025-02-12 Show GitHub Exploit DB Packet Storm