You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 16, 2025, 2:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
195171 | 5 | 警告 | daan sprenkels | - | FretsWeb におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2109 | 2012-06-26 16:10 | 2009-06-18 | Show | GitHub Exploit DB Packet Storm |
195172 | 7.5 | 危険 | com jumi Joomla! |
- | Joomla の jumi コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2102 | 2012-06-26 16:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
195173 | 6.8 | 警告 | castro xl | - | TorrentVolve の archive.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2101 | 2012-06-26 16:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
195174 | 7.5 | 危険 | david degner | - | phpCollegeExchange の house/listing_view.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2096 | 2012-06-26 16:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
195175 | 7.5 | 危険 | creative web solutions | - | Creative Web Solutions Multi-Level CMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2082 | 2012-06-26 16:10 | 2009-06-16 | Show | GitHub Exploit DB Packet Storm |
195176 | 3.5 | 注意 | Drupal | - | Drupal 用の Taxonomy manager モジュールの管理ページインターフェースにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2079 | 2012-06-26 16:10 | 2009-06-10 | Show | GitHub Exploit DB Packet Storm |
195177 | 4 | 警告 | Angry Donuts Drupal |
- | Drupal のモジュールにおけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2077 | 2012-06-26 16:10 | 2009-06-10 | Show | GitHub Exploit DB Packet Storm |
195178 | 3.5 | 注意 | Drupal | - | Drupal 用の Views モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2076 | 2012-06-26 16:10 | 2009-06-10 | Show | GitHub Exploit DB Packet Storm |
195179 | 7.5 | 危険 | Angry Donuts Drupal |
- | Drupal のモジュールの Nodequeue における詳細不明な脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2075 | 2012-06-26 16:10 | 2009-06-10 | Show | GitHub Exploit DB Packet Storm |
195180 | 3.5 | 注意 | Drupal | - | Drupal 用の Nodequeue モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2074 | 2012-06-26 16:10 | 2009-06-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
271 | 6.7 |
MEDIUM
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-908
Use of Uninitialized Resource |
CVE-2025-21357 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
272 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-122 CWE-843 Heap-based Buffer Overflow Type Confusion |
CVE-2025-21356 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
273 | 7.2 |
HIGH
Network |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-285
Improper Authorization |
CVE-2025-21348 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
274 | 7.1 |
HIGH
Local |
- | - | Microsoft Office Security Feature Bypass Vulnerability New |
CWE-693
Protection Mechanism Failure |
CVE-2025-21346 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
275 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21345 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
276 | 7.8 |
HIGH
Local |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21344 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
277 | 7.5 |
HIGH
Network
-
|
-
|
Windows Web Threat Defense User Service Information Disclosure Vulnerability
New
|
CWE-269
|
Improper Privilege Management
CVE-2025-21343
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
278 | - | - | - | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - OpenBadges Extension allows Cross-Site Scripting (XSS).Th… New | - | CVE-2025-23080 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
279 | 6.6 |
MEDIUM
Physics |
- | - | Windows Digital Media Elevation of Privilege Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21341 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
280 | 5.5 |
MEDIUM
Local |
- | - | Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability New |
CWE-284
Improper Access Control |
CVE-2025-21340 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |