Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 14, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195191 9.3 危険 Foxit Software Inc - Foxit Reader の Foxit JPEG2000/JBIG2 Decoder アドオンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2009-0690 2012-06-26 16:10 2009-06-23 Show GitHub Exploit DB Packet Storm
195192 5 警告 FlashTux - Chat (WeeChat) の Wee Enhanced Environment におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-0661 2012-06-26 16:10 2009-03-19 Show GitHub Exploit DB Packet Storm
195193 6.9 警告 ASUSTeK Computer Inc. - Asus SmartLogon における "セキュリティ機能" を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-0656 2012-06-26 16:10 2009-02-20 Show GitHub Exploit DB Packet Storm
195194 6.8 警告 falt4 - Falt4 CMS RC4 の admin/index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-0648 2012-06-26 16:10 2009-02-19 Show GitHub Exploit DB Packet Storm
195195 7.5 危険 4site - 4Site CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0646 2012-06-26 16:10 2009-02-18 Show GitHub Exploit DB Packet Storm
195196 5.1 警告 dminnich - Simple PHP News の post.php における news.txt へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-0643 2012-06-26 16:10 2009-02-20 Show GitHub Exploit DB Packet Storm
195197 7.5 危険 dminnich - Simple PHP News の post.php における news.txt へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-0610 2012-06-26 16:10 2009-02-17 Show GitHub Exploit DB Packet Storm
195198 4.3 警告 apmuthu - phpSkelSite の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0594 2012-06-26 16:10 2009-02-16 Show GitHub Exploit DB Packet Storm
195199 7.5 危険 cafeengine - Easy CafeEngine の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0574 2012-06-26 16:10 2009-02-13 Show GitHub Exploit DB Packet Storm
195200 4.3 警告 fotoware - FotoWeb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0573 2012-06-26 16:10 2009-02-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 14, 2025, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
191 - - - Incorrect Privilege Assignment vulnerability in Drupal Private content allows Target Influence via Framing.This issue affects Private content: from 0.0.0 before 2.1.0. - CVE-2024-13248 2025-01-11 07:15 2025-01-10 Show GitHub Exploit DB Packet Storm
192 - - - In Net::OAuth::Client in the Net::OAuth package before 0.29 for Perl, the default nonce is a 32-bit integer generated from the built-in rand() function, which is not cryptographically strong. - CVE-2025-22376 2025-01-11 07:15 2025-01-4 Show GitHub Exploit DB Packet Storm
193 5.4 MEDIUM
Network
osuuu lightpicture A vulnerability classified as problematic was found in osuuu LightPicture up to 1.2.2. This vulnerability affects unknown code of the file /api/upload of the component SVG File Upload Handler. The ma… CWE-79
Cross-site Scripting
CVE-2024-13141 2025-01-11 06:39 2025-01-6 Show GitHub Exploit DB Packet Storm
194 5.4 MEDIUM
Network
emlog emlog A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?action=upload_cover of the component Cover Upload Han… CWE-79
Cross-site Scripting
CVE-2024-13140 2025-01-11 06:34 2025-01-5 Show GitHub Exploit DB Packet Storm
195 9.8 CRITICAL
Network
code-projects online_shoe_store A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /summary.php. The manipulation of the argument tid leads … CWE-89
SQL Injection
CVE-2025-0208 2025-01-11 06:28 2025-01-4 Show GitHub Exploit DB Packet Storm
196 9.8 CRITICAL
Network
code-projects online_shoe_store A vulnerability, which was classified as critical, has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functionality of the file /function/login.php. The man… CWE-89
SQL Injection
CVE-2025-0207 2025-01-11 06:27 2025-01-4 Show GitHub Exploit DB Packet Storm
197 9.8 CRITICAL
Network
campcodes school_faculty_scheduling_system A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?act… CWE-89
SQL Injection
CVE-2025-0210 2025-01-11 06:20 2025-01-4 Show GitHub Exploit DB Packet Storm
198 - - - On affected platforms running Arista EOS with SNMP configured, if “snmp-server transmit max-size” is configured, under some circumstances a specially crafted packet can cause the snmpd process to lea… - CVE-2024-7095 2025-01-11 06:15 2025-01-11 Show GitHub Exploit DB Packet Storm
199 - - - On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might be copied to CPU, which may cause incorrect control plane behavior related to the packet, such as ro… - CVE-2024-5872 2025-01-11 06:15 2025-01-11 Show GitHub Exploit DB Packet Storm
200 - - - MonicaHQ v4.1.2 was discovered to contain an authenticated Client-Side Injection vulnerability via the Reason parameter at /people/h:[id]/debts/create. - CVE-2024-54998 2025-01-11 06:15 2025-01-11 Show GitHub Exploit DB Packet Storm