You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 16, 2025, 6:05 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
195141 | 7.5 | 危険 | cuteflow | - | CuteFlow におけるユーザ名を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2960 | 2012-06-26 16:10 | 2009-08-25 | Show | GitHub Exploit DB Packet Storm |
195142 | 4.3 | 警告 | buildbot | - | Buildbot の status/web/waterfall.py におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2959 | 2012-06-26 16:10 | 2009-08-25 | Show | GitHub Exploit DB Packet Storm |
195143 | 9.3 | 危険 | Debian Devscripts Devel Team |
- | devscripts の scripts/uscan.pl における Perl コードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2009-2946 | 2012-06-26 16:10 | 2009-02-14 | Show | GitHub Exploit DB Packet Storm |
195144 | 4.3 | 警告 | elkagroup | - | elka CMS の Search 機能におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2930 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195145 | 7.5 | 危険 | digitalspinners | - | DigitalSpinners DS CMS の DetailFile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2927 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195146 | 7.8 | 危険 | djcalendar | - | DJCalendar の DJcalendar.cgi におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2925 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195147 | 5 | 警告 | bitmixsoft | - | BitmixSoft PHP-Lance におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2923 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195148 | 4.3 | 警告 | elvinbts | - | Elvin におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2920 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195149 | 3.5 | 注意 | BoonEx | - | Boonex Orca におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2919 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
195150 | 9.3 | 危険 | 2kgames | - | 2K Games Vietcong の logs.dl の CNS_AddTxt 関数におけるフォーマットストリングの脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2009-2916 | 2012-06-26 16:10 | 2009-08-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
271 | 6.7 |
MEDIUM
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-908
Use of Uninitialized Resource |
CVE-2025-21357 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
272 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-122 CWE-843 Heap-based Buffer Overflow Type Confusion |
CVE-2025-21356 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
273 | 7.2 |
HIGH
Network |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-285
Improper Authorization |
CVE-2025-21348 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
274 | 7.1 |
HIGH
Local |
- | - | Microsoft Office Security Feature Bypass Vulnerability New |
CWE-693
Protection Mechanism Failure |
CVE-2025-21346 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
275 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21345 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
276 | 7.8 |
HIGH
Local |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21344 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
277 | 7.5 |
HIGH
Network
-
|
-
|
Windows Web Threat Defense User Service Information Disclosure Vulnerability
New
|
CWE-269
|
Improper Privilege Management
CVE-2025-21343
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
278 | - | - | - | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - OpenBadges Extension allows Cross-Site Scripting (XSS).Th… New | - | CVE-2025-23080 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
279 | 6.6 |
MEDIUM
Physics |
- | - | Windows Digital Media Elevation of Privilege Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21341 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
280 | 5.5 |
MEDIUM
Local |
- | - | Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability New |
CWE-284
Improper Access Control |
CVE-2025-21340 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |