Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194411 6.8 警告 リアルネットワークス - RealNetworks RealPlayer および RealPlayer SP の AAC SDK におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-2408 2012-09-13 15:23 2012-09-7 Show GitHub Exploit DB Packet Storm
194412 7.5 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer SP におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2407 2012-09-13 15:09 2012-09-7 Show GitHub Exploit DB Packet Storm
194413 5 警告 アドビシステムズ - Adobe ColdFusion におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2048 2012-09-13 14:35 2012-09-11 Show GitHub Exploit DB Packet Storm
194414 6.8 警告 Webmin Project - Webmin の file/show.cgi におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4893 2012-09-13 14:30 2012-09-11 Show GitHub Exploit DB Packet Storm
194415 2.6 注意 サイボウズ - KUNAI Browser for Remote Service β における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2012-4013 2012-09-13 12:02 2012-09-13 Show GitHub Exploit DB Packet Storm
194416 10 危険 FFmpeg - FFmpeg の libavcodec/indeo3.c における脆弱性 CWE-noinfo
情報不足
CVE-2012-2804 2012-09-13 11:01 2012-05-25 Show GitHub Exploit DB Packet Storm
194417 10 危険 FFmpeg - FFmpeg の libavcodec/mpeg12.c 内の mpeg_decode_frame 関数におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2803 2012-09-13 11:00 2012-05-25 Show GitHub Exploit DB Packet Storm
194418 10 危険 FFmpeg - FFmpeg の libavcodec/ac3dec.c 内の ac3_decode_frame 関数における脆弱性 CWE-noinfo
情報不足
CVE-2012-2802 2012-09-13 11:00 2012-05-25 Show GitHub Exploit DB Packet Storm
194419 10 危険 FFmpeg - FFmpeg の libavcodec/avs.c における脆弱性 CWE-noinfo
情報不足
CVE-2012-2801 2012-09-13 10:59 2012-05-25 Show GitHub Exploit DB Packet Storm
194420 10 危険 FFmpeg - FFmpeg の libavcodec/ivi_common.c 内の ff_ivi_process_empty_tile 関数における脆弱性 CWE-noinfo
情報不足
CVE-2012-2800 2012-09-13 10:59 2012-05-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 1, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
331 6.4 MEDIUM
Network
- - The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode in all versions up to, and including, 3.8.2… New CWE-79
Cross-site Scripting
CVE-2024-13470 2025-01-30 17:15 2025-01-30 Show GitHub Exploit DB Packet Storm
332 6.4 MEDIUM
Network
- - The Stratum – Elementor Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Hotspot widget in all versions up to, and including, 1.4.7 due to insufficient… New CWE-79
Cross-site Scripting
CVE-2024-13642 2025-01-30 16:15 2025-01-30 Show GitHub Exploit DB Packet Storm
333 5.3 MEDIUM
Network
- - The Event Tickets and Registration plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.18.1 via the tc-order-id parameter due to missing val… New CWE-284
Improper Access Control
CVE-2024-13457 2025-01-30 16:15 2025-01-30 Show GitHub Exploit DB Packet Storm
334 6.4 MEDIUM
Network
- - The EthereumICO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ethereum-ico shortcode in all versions up to, and including, 2.4.6 due to insufficient input sanitiz… New CWE-79
Cross-site Scripting
CVE-2024-12921 2025-01-30 15:15 2025-01-30 Show GitHub Exploit DB Packet Storm
335 - - - The Tracking Code Manager WordPress plugin before 2.4.0 does not sanitise and escape some of its metabox settings when outputing them in the page, which could allow users with a role as low as Contri… New - CVE-2024-10309 2025-01-30 15:15 2025-01-30 Show GitHub Exploit DB Packet Storm
336 - - - Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker wit… New CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2025-23374 2025-01-30 14:15 2025-01-30 Show GitHub Exploit DB Packet Storm
337 - - - In some cases, the ktrace facility will log the contents of kernel structures to userspace. In one such case, ktrace dumps a variable-sized sockaddr to userspace. There, the full sockaddr is copied… New - CVE-2025-0662 2025-01-30 14:15 2025-01-30 Show GitHub Exploit DB Packet Storm
338 - - - When etcupdate encounters conflicts while merging files, it saves a version containing conflict markers in /var/db/etcupdate/conflicts. This version does not preserve the mode of the input file, and… New - CVE-2025-0374 2025-01-30 14:15 2025-01-30 Show GitHub Exploit DB Packet Storm
339 - - - On 64-bit systems, the implementation of VOP_VPTOFH() in the cd9660, tarfs and ext2fs filesystems overflows the destination FID buffer by 4 bytes, a stack buffer overflow. A NFS server that exports … New - CVE-2025-0373 2025-01-30 14:15 2025-01-30 Show GitHub Exploit DB Packet Storm
340 6.3 MEDIUM
Network
- - A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The manipul… New CWE-285
CWE-266
Improper Authorization
 Incorrect Privilege Assignment
CVE-2025-0849 2025-01-30 11:15 2025-01-30 Show GitHub Exploit DB Packet Storm