You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 22, 2025, 6:04 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
194731 | 4.3 | 警告 | vBulletin Solutions, Inc. | - | vBulletin におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3844 | 2012-07-5 15:42 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194732 | 4.3 | 警告 | e107.org | - | e107 の登録ページにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3843 | 2012-07-5 15:39 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194733 | 4.3 | 警告 | JBMC Software | - | JBMC Software DirectAdmin の CMD_DOMAIN におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3842 | 2012-07-5 15:38 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194734 | 9.3 | 危険 | KMPlayer's Forums | - | KMPlayer における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2012-3841 | 2012-07-5 15:35 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194735 | 4.3 | 警告 | Jesse Terry | - | MyClientBase の index.php/users/form/user_id におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3840 | 2012-07-5 15:32 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194736 | 7.5 | 危険 | Jesse Terry | - | MyClientBase の application/core/MY_Model.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-3839 | 2012-07-5 15:31 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194737 | 5 | 警告 | SCHLIX | - | Gekko におけるインストールパスを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-3838 | 2012-07-5 15:29 | 2012-05-2 | Show | GitHub Exploit DB Packet Storm |
194738 | 4.3 | 警告 | SCHLIX | - | Baby Gekko の apps/users/registration.template.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3837 | 2012-07-5 15:28 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
194739 | 4.3 | 警告 | SCHLIX | - | Baby Gekko におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3836 | 2012-07-5 15:26 | 2012-05-2 | Show | GitHub Exploit DB Packet Storm |
194740 | 4.3 | 警告 | AlienVault | - | AlienVault の OSSIM におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3835 | 2012-07-5 15:13 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 23, 2025, 5:11 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
141 | - | - | - | A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining ale… New | - | CVE-2025-23196 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
142 | - | - | - | An XML External Entity (XXE) vulnerability exists in the Ambari/Oozie project, allowing an attacker to inject malicious XML entities. This vulnerability occurs due to insecure parsing of XML input … New | - | CVE-2025-23195 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
143 | - | - | - | A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processin… New | - | CVE-2024-51941 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
144 | - | - | - | The List category posts WordPress plugin before 0.90.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which cou… Update | - | CVE-2024-9020 | 2025-01-23 00:15 | 2025-01-18 | Show | GitHub Exploit DB Packet Storm | |
145 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21329 | 2025-01-23 00:02 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
146 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21328 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
147 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21327 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
148 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 |
Internet Explorer Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21326 | 2025-01-22 23:48 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
149 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21323 | 2025-01-22 23:47 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
150 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21324 | 2025-01-22 23:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |