You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 17, 2025, 6:04 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
195221 | 6.8 | 警告 | databay | - | MaxCMS における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3424 | 2012-06-26 16:18 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
195222 | 8.5 | 危険 | Craig Barratt | - | BackupPC の CgiUserConfigEdit における重要なファイルを読み書きされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3369 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195223 | 9.3 | 危険 | FTPShell | - | FTPShell Client におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3364 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195224 | 4.3 | 警告 | Datemill | - | Datemill におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3360 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195225 | 4.3 | 警告 | datetopia | - | Match Agency BiZ におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3359 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195226 | 4.3 | 警告 | datetopia | - | Datetopia Buy Dating Site の profile.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3355 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195227 | 10 | 危険 | Drupal andrew sterling hanenkamp |
- | Drupal の Rest API モジュールにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3354 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195228 | 7.5 | 危険 | datavore | - | Datavore Gyro における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3349 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195229 | 4.3 | 警告 | datavore | - | Datavore Gyro におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3348 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
195230 | 10 | 危険 | D-Link Systems, Inc. | - | D-Link DIR-400 無線ルータにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3347 | 2012-06-26 16:18 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 17, 2025, 5:08 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
401 | 7.8 |
HIGH
Local |
- | - | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability New |
CWE-269
Improper Privilege Management |
CVE-2025-21360 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
402 | 6.7 |
MEDIUM
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-908
Use of Uninitialized Resource |
CVE-2025-21357 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
403 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-122 CWE-843 Heap-based Buffer Overflow Type Confusion |
CVE-2025-21356 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
404 | 7.2 |
HIGH
Network |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-285
Improper Authorization |
CVE-2025-21348 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
405 | 7.1 |
HIGH
Local |
- | - | Microsoft Office Security Feature Bypass Vulnerability New |
CWE-693
Protection Mechanism Failure |
CVE-2025-21346 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
406 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21345 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
407 | 7.8 |
HIGH
Local |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21344 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
408 | 7.5 |
HIGH
Network
-
|
-
|
Windows Web Threat Defense User Service Information Disclosure Vulnerability
New
|
CWE-269
|
Improper Privilege Management
CVE-2025-21343
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
409 | - | - | - | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - OpenBadges Extension allows Cross-Site Scripting (XSS).Th… New | - | CVE-2025-23080 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
410 | 6.6 |
MEDIUM
Physics |
- | - | Windows Digital Media Elevation of Privilege Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21341 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |