Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 12, 2025, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195641 6.8 警告 experts - Experts の answer.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5267 2012-06-26 16:03 2008-11-28 Show GitHub Exploit DB Packet Storm
195642 7.5 危険 airvae - Airvae Commerce における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5223 2012-06-26 16:03 2008-11-25 Show GitHub Exploit DB Packet Storm
195643 7.5 危険 dvbbs - Dvbbs の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5222 2012-06-26 16:03 2008-11-25 Show GitHub Exploit DB Packet Storm
195644 7.5 危険 aj square - AJ Square ZeusCart の category_list.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5216 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195645 7.5 危険 clanlite - ClanLite の service/profil.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5215 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195646 4.3 警告 clanlite - ClanLite の service/calendrier.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5214 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195647 7.5 危険 aj square - AJ Article の featured_article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5213 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195648 7.5 危険 aj square - AJ Auction の classifide_ad.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5212 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195649 5 警告 Admidio - Admidio の modules/download/get_file.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5209 2012-06-26 16:03 2008-11-24 Show GitHub Exploit DB Packet Storm
195650 7.5 危険 eshop100 - eSHOP100 の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5190 2012-06-26 16:03 2008-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 12, 2025, 4:59 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221 - - - Incorrect Authorization vulnerability in Drupal Diff allows Functionality Misuse.This issue affects Diff: from 0.0.0 before 1.8.0. New - CVE-2024-13278 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
222 - - - Incorrect Authorization vulnerability in Drupal Smart IP Ban allows Forceful Browsing.This issue affects Smart IP Ban: from 7.X-1.0 before 7.X-1.1. New - CVE-2024-13277 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
223 - - - Insertion of Sensitive Information Into Sent Data vulnerability in Drupal File Entity (fieldable files) allows Forceful Browsing.This issue affects File Entity (fieldable files): from 7.X-* before 7.… New - CVE-2024-13276 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
224 - - - Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno module allows PHP Local File Inclusion.This issue affects Opigno module: from 0… New - CVE-2024-13264 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
225 - - - Cross-Site Request Forgery (CSRF) vulnerability in Drupal Migrate queue importer allows Cross Site Request Forgery.This issue affects Migrate queue importer: from 0.0.0 before 2.1.1. New - CVE-2024-13260 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
226 - - - Insertion of Sensitive Information Into Sent Data vulnerability in Drupal Image Sizes allows Forceful Browsing.This issue affects Image Sizes: from 0.0.0 before 3.0.2. New - CVE-2024-13259 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
227 - - - Incorrect Authorization vulnerability in Drupal Drupal REST & JSON API Authentication allows Forceful Browsing.This issue affects Drupal REST & JSON API Authentication: from 0.0.0 before 2.0.13. New - CVE-2024-13258 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
228 - - - Incorrect Authorization vulnerability in Drupal Commerce View Receipt allows Forceful Browsing.This issue affects Commerce View Receipt: from 0.0.0 before 1.0.3. New - CVE-2024-13257 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
229 - - - Insufficient Granularity of Access Control vulnerability in Drupal Email Contact allows Forceful Browsing.This issue affects Email Contact: from 0.0.0 before 2.0.4. New - CVE-2024-13256 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm
230 - - - Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10. New - CVE-2024-13255 2025-01-11 02:15 2025-01-10 Show GitHub Exploit DB Packet Storm