Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195531 4 警告 Moodle - Moodle におけるサービス運用妨害 (不正なデータベースレコード) の脆弱性 CWE-89
SQLインジェクション
CVE-2011-4292 2012-07-18 18:12 2011-05-18 Show GitHub Exploit DB Packet Storm
195532 4 警告 Moodle - Moodle におけるサービス運用妨害 (不正なデータベースレコード) の脆弱性 CWE-noinfo
情報不足
CVE-2011-4291 2012-07-18 18:10 2011-05-18 Show GitHub Exploit DB Packet Storm
195533 4.3 警告 Moodle - Moodle の lib/weblib.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4290 2012-07-18 18:10 2011-05-18 Show GitHub Exploit DB Packet Storm
195534 4 警告 Moodle - Moodle における重要なアドレス情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4289 2012-07-18 18:09 2011-05-18 Show GitHub Exploit DB Packet Storm
195535 4 警告 Moodle - Moodle における任意の生徒のクイズレポートを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4288 2012-07-18 18:07 2011-05-18 Show GitHub Exploit DB Packet Storm
195536 6.8 警告 Moodle - Moodle の admin/uploaduser_form.php におけるアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4287 2012-07-18 18:06 2011-05-18 Show GitHub Exploit DB Packet Storm
195537 4.3 警告 Moodle - Moodle の filter/mediaplugin/filter.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4286 2012-07-18 18:06 2011-03-1 Show GitHub Exploit DB Packet Storm
195538 5.5 警告 Moodle - Moodle のデフォルト設定における任意のコースを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4285 2012-07-18 18:04 2011-03-1 Show GitHub Exploit DB Packet Storm
195539 5 警告 Moodle - Moodle における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4284 2012-07-18 17:55 2011-03-1 Show GitHub Exploit DB Packet Storm
195540 5 警告 Moodle - Moodle における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4283 2012-07-18 17:53 2011-03-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 3, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle PPOM for WooCommerce allows Stored XSS. This issue affects PPOM for WooCommerce: from n… CWE-79
Cross-site Scripting
CVE-2025-24668 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
992 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeIsle AI Chatbot for WordPress – Hyve Lite allows Stored XSS. This issue affects AI Chatbot f… CWE-79
Cross-site Scripting
CVE-2025-24666 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
993 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tips and Tricks HQ, Ruhul Amin, Josh Lobe Simple Download Monitor allows Blind SQL Injection. Thi… CWE-89
SQL Injection
CVE-2025-24663 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
994 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WordPress Download Manager Premium Packages allows Blind SQL Injection. This issue affects Premiu… CWE-89
SQL Injection
CVE-2025-24659 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
995 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joe Hawes Auction Nudge – Your eBay on Your Site allows Stored XSS. This issue affects Auction Nu… CWE-79
Cross-site Scripting
CVE-2025-24658 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
996 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebToffee Wishlist for WooCommerce allows Stored XSS. This issue affects Wishlist for WooCommerce… CWE-79
Cross-site Scripting
CVE-2025-24657 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
997 - - - Missing Authorization vulnerability in Revmakx WP Duplicate – WordPress Migration Plugin allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Duplicate – Wor… CWE-862
 Missing Authorization
CVE-2025-24652 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
998 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Themefic Tourfic allows Upload a Web Shell to a Web Server. This issue affects Tourfic: from n/a through 2.15.3. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2025-24650 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
999 - - - Missing Authorization vulnerability in wpase.com Admin and Site Enhancements (ASE) allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Admin and Site Enhanceme… CWE-862
 Missing Authorization
CVE-2025-24649 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm
1000 - - - Cross-Site Request Forgery (CSRF) vulnerability in datafeedr.com WooCommerce Cloak Affiliate Links allows Cross Site Request Forgery. This issue affects WooCommerce Cloak Affiliate Links: from n/a th… CWE-352
 Origin Validation Error
CVE-2025-24647 2025-01-25 03:15 2025-01-25 Show GitHub Exploit DB Packet Storm