You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 16, 2025, 6:05 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
195141 | 7.5 | 危険 | cuteflow | - | CuteFlow におけるユーザ名を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2960 | 2012-06-26 16:10 | 2009-08-25 | Show | GitHub Exploit DB Packet Storm |
195142 | 4.3 | 警告 | buildbot | - | Buildbot の status/web/waterfall.py におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2959 | 2012-06-26 16:10 | 2009-08-25 | Show | GitHub Exploit DB Packet Storm |
195143 | 9.3 | 危険 | Debian Devscripts Devel Team |
- | devscripts の scripts/uscan.pl における Perl コードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2009-2946 | 2012-06-26 16:10 | 2009-02-14 | Show | GitHub Exploit DB Packet Storm |
195144 | 4.3 | 警告 | elkagroup | - | elka CMS の Search 機能におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2930 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195145 | 7.5 | 危険 | digitalspinners | - | DigitalSpinners DS CMS の DetailFile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2927 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195146 | 7.8 | 危険 | djcalendar | - | DJCalendar の DJcalendar.cgi におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2925 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195147 | 5 | 警告 | bitmixsoft | - | BitmixSoft PHP-Lance におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2923 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195148 | 4.3 | 警告 | elvinbts | - | Elvin におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2920 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195149 | 3.5 | 注意 | BoonEx | - | Boonex Orca におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2919 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195150 | 9.3 | 危険 | 2kgames | - | 2K Games Vietcong の logs.dl の CNS_AddTxt 関数におけるフォーマットストリングの脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2009-2916 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
261 | 7.8 |
HIGH
Local |
- | - | Windows CSC Service Elevation of Privilege Vulnerability New |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21378 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
262 | 5.5 |
MEDIUM
Local |
- | - | Windows CSC Service Information Disclosure Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21374 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
263 | 7.8 |
HIGH
Local |
- | - | Microsoft Brokering File System Elevation of Privilege Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21372 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
264 | 7.8 |
HIGH
Local |
- | - | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21370 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
265 | 7.8 |
HIGH
Local |
- | - | Microsoft Access Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21366 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
266 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Remote Code Execution Vulnerability New |
CWE-426
Untrusted Search Path |
CVE-2025-21365 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
267 | 7.8 |
HIGH
Local |
- | - | Microsoft Excel Security Feature Bypass Vulnerability New |
CWE-502
Deserialization of Untrusted Data |
CVE-2025-21364 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
268 | 7.8 |
HIGH
Local |
- | - | Microsoft Word Remote Code Execution Vulnerability New |
CWE-822
Untrusted Pointer Dereference |
CVE-2025-21363 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
269 | 7.8 |
HIGH
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-641
Improper Restriction of Names for Files and Other Resources |
CVE-2025-21361 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
270 | 7.8 |
HIGH
Local |
- | - | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability New |
CWE-269
Improper Privilege Management |
CVE-2025-21360 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |