Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194831 9.3 危険 アップル
Google
- Google Chrome で使用される WebKit における Chrome サンドボックス内の任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0647 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
194832 5 警告 シスコシステムズ - CCS における JHTML ファイルのソースコードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2010-0642 2012-06-26 16:19 2010-02-17 Show GitHub Exploit DB Packet Storm
194833 4.3 警告 シスコシステムズ - CCS の webline/html/admin/wcs/LoginPage.jhtml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0641 2012-06-26 16:19 2010-02-17 Show GitHub Exploit DB Packet Storm
194834 7.5 危険 eicrasoft - Eicra Car Rental-Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0631 2012-06-26 16:19 2010-02-12 Show GitHub Exploit DB Packet Storm
194835 7.5 危険 evernewscripts - Evernew Free Joke Script の viewjokes.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0630 2012-06-26 16:19 2010-02-12 Show GitHub Exploit DB Packet Storm
194836 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC HomeBase Server の SSL Service におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0620 2012-06-26 16:19 2010-02-24 Show GitHub Exploit DB Packet Storm
194837 5 警告 arwscripts - ARWScripts Fonts Script の viewfile.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0613 2012-06-26 16:19 2010-02-11 Show GitHub Exploit DB Packet Storm
194838 6.8 警告 アップル
Google
- Google Chrome で使用される WebKit の WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp における同一生成元ポリシを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0661 2012-06-26 16:19 2009-12-16 Show GitHub Exploit DB Packet Storm
194839 4.3 警告 アップル
Google
- Google Chrome で使用される WebKit における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0656 2012-06-26 16:19 2009-08-27 Show GitHub Exploit DB Packet Storm
194840 4.3 警告 アップル
Google
- Google Chrome および Apple Safari における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0651 2012-06-26 16:19 2009-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
61 - - - In endCallForSubscriber of PhoneInterfaceManager.java, there is a possible way to prevent access to emergency services due to a logic error in the code. This could lead to a local denial of service w… New - CVE-2017-13322 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
62 3.3 LOW
Local
termius termius An issue in termius before v.9.9.0 allows a local attacker to execute arbitrary code via a crafted script to the DYLD_INSERT_LIBRARIES component. New CWE-426
 Untrusted Search Path
CVE-2024-55503 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
63 3.3 LOW
Local
phiewer phiewer In Phiewer 4.1.0, a dylib injection leads to Command Execution which allow attackers to inject dylib file potentially leading to remote control and unauthorized access to sensitive user data. New CWE-426
 Untrusted Search Path
CVE-2024-53407 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
64 6.5 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, and including, 1.4.8 due to insufficient escaping … New CWE-89
SQL Injection
CVE-2024-12615 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
65 4.3 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'pms_save_setting' and 'post_new_pass' AJAX actions in all versi… New CWE-862
 Missing Authorization
CVE-2024-12614 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
66 7.5 HIGH
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to, and including, 1.4.8 due to insufficient escaping… New CWE-89
SQL Injection
CVE-2024-12613 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
67 - - - KaTeX is a fast, easy-to-use JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressions with `renderToString` could encounter malicious input usin… New CWE-116
 Improper Encoding or Escaping of Output
CVE-2025-23207 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm
68 6.3 MEDIUM
Network
- - A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/admin/edit_member.php. The manipulation o… New CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0541 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm
69 - - - OtCMS <=V7.46 is vulnerable to Server-Side Request Forgery (SSRF) in /admin/read.php, which can Read system files arbitrarily. New - CVE-2024-57252 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm
70 - - - A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method to override this downgrade protection has been identified. New - CVE-2023-50738 2025-01-18 07:15 2025-01-18 Show GitHub Exploit DB Packet Storm