Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194821 4.3 警告 FFmpeg - FFmpeg の libavcodec/j2k_dwt.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-0849 2012-08-29 17:39 2011-12-16 Show GitHub Exploit DB Packet Storm
194822 4.3 警告 Andreas Gohr - DokuWiki の doku.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2129 2012-08-29 15:57 2012-04-19 Show GitHub Exploit DB Packet Storm
194823 4.3 警告 TYPO3 Association - TYPO3 の例外ハンドラにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2112 2012-08-29 15:56 2012-04-17 Show GitHub Exploit DB Packet Storm
194824 4.3 警告 Sourcefabric - Newscoop の admin/login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4679 2012-08-29 15:55 2012-04-5 Show GitHub Exploit DB Packet Storm
194825 4.3 警告 Sourcefabric - Newscoop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1935 2012-08-29 15:54 2012-04-5 Show GitHub Exploit DB Packet Storm
194826 7.5 危険 Sourcefabric - Newscoop の admin/country/edit.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1934 2012-08-29 15:53 2012-04-5 Show GitHub Exploit DB Packet Storm
194827 6.8 警告 Sourcefabric - Newscoop における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2012-1933 2012-08-29 15:52 2012-04-5 Show GitHub Exploit DB Packet Storm
194828 4.4 警告 Google - Tunnelblick における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4677 2012-08-29 11:53 2012-08-26 Show GitHub Exploit DB Packet Storm
194829 1.2 注意 Google - Tunnelblick の errorExitIfAttackViaString 関数における任意のファイルを削除される脆弱性 CWE-59
リンク解釈の問題
CVE-2012-4676 2012-08-29 11:51 2012-08-26 Show GitHub Exploit DB Packet Storm
194830 1.2 注意 Google - Tunnelblick における予期せぬプロセスを停止される脆弱性 CWE-362
競合状態
CVE-2012-3487 2012-08-29 11:50 2012-08-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
941 - - - Local privilege escalation in G DATA Security Client due to incorrect assignment of privileges to directories. This vulnerability allows a local, unprivileged attacker to escalate privileges on affec… - CVE-2025-0543 2025-01-26 02:15 2025-01-26 Show GitHub Exploit DB Packet Storm
942 - - - Local privilege escalation due to incorrect assignment of privileges of temporary files in the update mechanism of G DATA Management Server. This vulnerability allows a local, unprivileged attacker t… - CVE-2025-0542 2025-01-26 02:15 2025-01-26 Show GitHub Exploit DB Packet Storm
943 5.3 MEDIUM
Network
- - IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries. CWE-117
 Improper Output Neutralization for Logs
CVE-2024-35150 2025-01-26 00:15 2025-01-26 Show GitHub Exploit DB Packet Storm
944 6.3 MEDIUM
Network
- - IBM Maximo Application Suite 8.10.10, 8.11.7, and 9.0 - Monitor Component is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker… CWE-89
SQL Injection
CVE-2024-35148 2025-01-26 00:15 2025-01-26 Show GitHub Exploit DB Packet Storm
945 6.1 MEDIUM
Network
- - IBM Maximo Application Suite 9.0.0 - Monitor Component is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated attacker to embed arbitrary JavaScript code in the Web UI th… CWE-79
Cross-site Scripting
CVE-2024-35145 2025-01-26 00:15 2025-01-26 Show GitHub Exploit DB Packet Storm
946 5.3 MEDIUM
Network
- - IBM Maximo Application Suite 8.10, 8.11, and 9.0 - Monitor Component stores source code on the web server that could aid in further attacks against the system. CWE-540
 Inclusion of Sensitive Information in Source Code
CVE-2024-35144 2025-01-26 00:15 2025-01-26 Show GitHub Exploit DB Packet Storm
947 8.8 HIGH
Network
- - IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length checking. A remote authenticated attacker could overflow a buffer and execute arbitrary code on the syst… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2024-39750 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
948 5.3 MEDIUM
Network
- - IBM Analytics Content Hub 2.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in furth… CWE-209
Information Exposure Through an Error Message
CVE-2024-35134 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
949 5.3 MEDIUM
Network
- - IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts. CWE-204
 Response Discrepancy Information Exposure
CVE-2024-35114 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm
950 4.3 MEDIUM
Network
- - IBM Control Center 6.2.1 and 6.3.1 could allow an authenticated user to obtain sensitive information exposed through a directory listing. CWE-548
 Exposure of Information Through Directory Listing
CVE-2024-35113 2025-01-25 23:15 2025-01-25 Show GitHub Exploit DB Packet Storm