Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194581 6.9 警告 サイバーリンク株式会社 - CyberLink PowerProducer における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-4758 2012-09-10 15:33 2012-09-6 Show GitHub Exploit DB Packet Storm
194582 6.9 警告 サイバーリンク株式会社 - CyberLink StreamAuthor における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-4757 2012-09-10 15:32 2012-09-6 Show GitHub Exploit DB Packet Storm
194583 6.9 警告 サイバーリンク株式会社 - CyberLink LabelPrint における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-4756 2012-09-10 15:32 2012-09-6 Show GitHub Exploit DB Packet Storm
194584 6.9 警告 Scientific Toolworks - SciTools Understand における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-4755 2012-09-10 15:31 2012-09-6 Show GitHub Exploit DB Packet Storm
194585 6.3 警告 Mindjet - MindManager 2012 における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-4754 2012-09-10 15:30 2012-09-6 Show GitHub Exploit DB Packet Storm
194586 6.9 警告 Attachmate - Attachmate Reflection における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5157 2012-09-10 15:28 2012-09-6 Show GitHub Exploit DB Packet Storm
194587 6.9 警告 Sowsoft - Effective File Search における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5156 2012-09-10 15:28 2012-09-6 Show GitHub Exploit DB Packet Storm
194588 6.3 警告 EC Software - Help & Manual における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5155 2012-09-10 15:27 2012-09-6 Show GitHub Exploit DB Packet Storm
194589 6.9 警告 SAP - SAP GUI の SAPGui.exe または BExAnalyzer.exe における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5154 2012-09-10 15:25 2012-09-6 Show GitHub Exploit DB Packet Storm
194590 6.3 警告 ACD Systems - FotoSlate における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5153 2012-09-10 15:24 2012-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 8, 2025, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1031 - - - The Bulk Me Now! WordPress plugin through 2.0 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks. - CVE-2024-12709 2025-01-31 01:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1032 - - - The Bulk Me Now! WordPress plugin through 2.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow … - CVE-2024-12708 2025-01-31 01:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1033 - - - The Bulk Me Now! WordPress plugin through 2.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against h… - CVE-2024-12638 2025-01-31 01:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1034 - - - The tourmaster WordPress plugin before 5.3.5 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting. - CVE-2024-12400 2025-01-31 01:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1035 - - - The goodlayers-core WordPress plugin before 2.1.3 allows users with a subscriber role and above to upload SVGs containing malicious payloads. - CVE-2024-12163 2025-01-31 01:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1036 - - - VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated… - CVE-2025-22218 2025-01-31 00:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1037 3.5 LOW
Network
- - A vulnerability classified as problematic has been found in Maybecms 1.2. This affects an unknown part of the file /mb/admin/index.php?u=article-edit of the component Add Article. The manipulation of… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0871 2025-01-31 00:15 2025-01-31 Show GitHub Exploit DB Packet Storm
1038 4.3 MEDIUM
Network
- - The Elementor Website Builder Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.25.10 via the 'elementor-template' shortcode. This makes… CWE-200
Information Exposure
CVE-2024-8494 2025-01-30 23:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1039 9.8 CRITICAL
Network
- - The iControlWP – Multiple WordPress Site Manager plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.4.5 via deserialization of untrusted input from the… CWE-502
 Deserialization of Untrusted Data
CVE-2024-13742 2025-01-30 23:15 2025-01-30 Show GitHub Exploit DB Packet Storm
1040 8.8 HIGH
Network
- - The WP Image Uploader plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the gky_image_uploader_main_function() function in all versions up to, … CWE-352
 Origin Validation Error
CVE-2024-13720 2025-01-30 23:15 2025-01-30 Show GitHub Exploit DB Packet Storm