Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194971 2.6 注意 Digium - Certified Asterisk および Asterisk Open Source におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-16
環境設定
CVE-2012-2947 2012-06-27 16:23 2012-05-29 Show GitHub Exploit DB Packet Storm
194972 7.5 危険 The OTR Development Team - Pidgin 用の OTR pidgin-otr プラグインにおけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2012-2369 2012-06-27 15:35 2012-05-16 Show GitHub Exploit DB Packet Storm
194973 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp および RoboHelp Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0524 2012-06-27 13:52 2009-02-24 Show GitHub Exploit DB Packet Storm
194974 3.5 注意 Apache Software Foundation - Apache Roller におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2381 2012-06-27 11:20 2012-06-26 Show GitHub Exploit DB Packet Storm
194975 9.3 危険 Apache Software Foundation - Apache Roller の admin/editor コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2380 2012-06-27 11:18 2012-06-26 Show GitHub Exploit DB Packet Storm
194976 5.8 警告 nicholas thompson - Drupal 用の Global Redirect モジュールにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2010-2021 2012-06-27 11:09 2012-06-13 Show GitHub Exploit DB Packet Storm
194977 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0523 2012-06-27 11:05 2009-02-24 Show GitHub Exploit DB Packet Storm
194978 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp によって作成されたファイルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0642 2012-06-27 11:02 2008-02-12 Show GitHub Exploit DB Packet Storm
194979 4.3 警告 Webmin Project - Webmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1937 2012-06-27 10:56 2011-05-31 Show GitHub Exploit DB Packet Storm
194980 5.1 警告 ターボリナックス
ImageMagick
レッドハット
オラクル
- ImageMagick における不正な Sun Rasterfile ファイルによるヒープオーバーフローの脆弱性 - CVE-2006-3744 2012-06-27 10:50 2006-08-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 23, 2025, 5:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
551 4.7 MEDIUM
Network
- - A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0. This vulnerability affects unknown code of the file /add-pig.php. The manipulation of the argument p… CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2025-0582 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
552 3.5 LOW
Network
- - A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0. This affects an unknown part of the file /chat/group/send of the component Chat History. The mani… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0581 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
553 5.6 MEDIUM
Network
- - A vulnerability was found in Shiprocket Module 3 on OpenCart. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php?route=extension/module/rest_ap… CWE-285
CWE-863
Improper Authorization
 Incorrect Authorization
CVE-2025-0580 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
554 7.3 HIGH
Network
- - A vulnerability was found in Shiprocket Module 3/4 on OpenCart. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php?route=extension/shi… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0579 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
555 4.5 MEDIUM
Local
- - A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to un… CWE-426
 Untrusted Search Path
CVE-2024-13524 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
556 6.1 MEDIUM
Network
- - The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishin… CWE-79
Cross-site Scripting
CVE-2025-0583 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
557 3.5 LOW
Network
- - A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as problematic. Affected is an unknown function of the file /account/forgotpassword of the component Pas… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0578 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
558 4.3 MEDIUM
Network
- - A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue affects some unknown processing of the file /control/player?center&eventlist&pda&dummy_for_reload=173617763… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0576 2025-01-20 09:15 2025-01-20 Show GitHub Exploit DB Packet Storm
559 3.9 LOW
Local
- - A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as problematic. This vulnerability affects unknown code of the component Rooting Detection. The manipulatio… CWE-693
 Protection Mechanism Failure
CVE-2025-0575 2025-01-20 08:15 2025-01-20 Show GitHub Exploit DB Packet Storm
560 9.1 CRITICAL
Network
- - IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system due to improper validation of … - CVE-2024-41783 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm