You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 18, 2025, 2 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
194551 | 7.5 | 危険 | graviton-mediatech | - | Visitor Logger の banned.php における PHP リモートファイルインクルーションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-2146 | 2012-06-26 16:19 | 2010-06-3 | Show | GitHub Exploit DB Packet Storm |
194552 | 6.8 | 警告 | giaard | - | ProMan におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-2138 | 2012-06-26 16:19 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
194553 | 7.5 | 危険 | giaard | - | ProMan の _center.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-2137 | 2012-06-26 16:19 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
194554 | 6.8 | 警告 | articlefriendly | - | Article Friendly の admin/index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-2136 | 2012-06-26 16:19 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
194555 | 7.5 | 危険 | danny ho | - | OES における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-2132 | 2012-06-26 16:19 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
194556 | 4.3 | 警告 | arisglobal | - | Aris Global ARISg の wflogin.jsp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-2130 | 2012-06-26 16:19 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
194557 | 7.5 | 危険 | bartels-schoene | - | Bartels Schone ConPresso の firma.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-2124 | 2012-06-26 16:19 | 2010-06-1 | Show | GitHub Exploit DB Packet Storm |
194558 | 2.6 | 注意 | brekeke | - | Brekeke PBX の pbx/gate におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-2114 | 2012-06-26 16:19 | 2010-05-28 | Show | GitHub Exploit DB Packet Storm |
194559 | 4.3 | 警告 | Apache Software Foundation | - | SAP Business Objects などで使用される Apache Axis2/Java の axis2-admin/axis2-admin/engagingglobally におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-2103 | 2012-06-26 16:19 | 2010-05-27 | Show | GitHub Exploit DB Packet Storm |
194560 | 7.5 | 危険 | e107.org | - | e107 の bbcode/php.bb における PHP リモートファイルインクルージョンの脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-2099 | 2012-06-26 16:19 | 2010-05-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 18, 2025, 4:13 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1 | 6.3 |
MEDIUM
Network |
- | - | A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown processing of the file /user/leaveroom.php. The manipulation of the argument id … New |
CWE-89 CWE-74 SQL Injection Injection |
CVE-2025-0531 | 2025-01-18 01:15 | 2025-01-18 | Show | GitHub Exploit DB Packet Storm |
2 | 3.5 |
LOW
Network |
- | - | A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as problematic. This vulnerability affects unknown code of the file /_parse/_feedback_system.php. The manipulation o… New |
CWE-79 CWE-94 Cross-site Scripting Code Injection |
CVE-2025-0530 | 2025-01-18 01:15 | 2025-01-18 | Show | GitHub Exploit DB Packet Storm |
3 | 7.3 |
HIGH
Local |
microsoft | visual_studio_2022 | Visual Studio Elevation of Privilege Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21405 | 2025-01-18 00:47 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
4 | 7.8 |
HIGH
Local |
microsoft |
access 365_apps office |
Microsoft Access Remote Code Execution Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21395 | 2025-01-18 00:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
5 | 6.3 |
MEDIUM
Network |
microsoft | sharepoint_server | Microsoft SharePoint Server Spoofing Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21393 | 2025-01-18 00:45 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
6 | 7.5 |
HIGH
Network
microsoft
|
windows_server_2008 |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows…
Windows upnphost.dll Denial of Service Vulnerability
New
|
NVD-CWE-noinfo
|
CVE-2025-21389
|
2025-01-18 00:44 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
7 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2 windows_server_2019 windows_ser… |
Windows Graphics Component Elevation of Privilege Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21382 | 2025-01-18 00:42 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
8 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows CSC Service Elevation of Privilege Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21378 | 2025-01-18 00:42 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
9 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows CSC Service Information Disclosure Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21374 | 2025-01-18 00:39 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
10 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_11_24h2 |
Microsoft Brokering File System Elevation of Privilege Vulnerability New |
NVD-CWE-noinfo
|
CVE-2025-21372 | 2025-01-18 00:36 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |