Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197821 6.8 警告 drennansoft - My Simple Forum の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5604 2012-06-26 16:03 2008-12-16 Show GitHub Exploit DB Packet Storm
197822 6.8 警告 bonzacart - Bonza Cart の admin/ad_settings.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5567 2012-06-26 16:03 2008-12-15 Show GitHub Exploit DB Packet Storm
197823 6.8 警告 dinkumsoft - DL PayCart の admin/settings.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5565 2012-06-26 16:03 2008-12-15 Show GitHub Exploit DB Packet Storm
197824 7.8 危険 アルバネットワークス株式会社 - Aruba Mobility Controller におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-5563 2012-06-26 16:03 2008-12-8 Show GitHub Exploit DB Packet Storm
197825 5 警告 aspapps - ASPPortal におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5562 2012-06-26 16:03 2008-12-15 Show GitHub Exploit DB Packet Storm
197826 5 警告 dazzlindonna - PostEcards におけるデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5560 2012-06-26 16:03 2008-12-15 Show GitHub Exploit DB Packet Storm
197827 7.5 危険 dazzlindonna - PostEcards の sendcard.cfm における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5559 2012-06-26 16:03 2008-12-15 Show GitHub Exploit DB Packet Storm
197828 4.3 警告 Digium - Asterisk Open Source におけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2008-5558 2012-06-26 16:03 2008-12-17 Show GitHub Exploit DB Packet Storm
197829 9.3 危険 ESET
マイクロソフト
- ESet NOD32 Antivirus における HTML 文書内のマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5534 2012-06-26 16:03 2008-12-12 Show GitHub Exploit DB Packet Storm
197830 9.3 危険 フォーティネット
マイクロソフト
- Fortinet Antivirus における HTML 文書内のマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5531 2012-06-26 16:03 2008-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 5, 2025, 4:56 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
961 6.6 MEDIUM
Local
- - A vulnerability was found in CRI-O. A path traversal issue in the log management functions (UnMountPodLogs and LinkContainerLogs) may allow an attacker with permissions to create and delete Pods to u… CWE-22
Path Traversal
CVE-2025-0750 2025-01-28 19:15 2025-01-28 Show GitHub Exploit DB Packet Storm
962 5.5 MEDIUM
Local
- - A flaw was found in Infinispan, when using JGroups with JDBC_PING. This issue occurs when an application inadvertently exposes sensitive information, such as configuration details or credentials, thr… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2025-0736 2025-01-28 18:15 2025-01-28 Show GitHub Exploit DB Packet Storm
963 - - - An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.0 prior to 17.5.5, from 17.6 prior to 17.6.3, and from 17.7 prior to 17.7.1. Under certain conditions, processing … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2025-0290 2025-01-28 18:15 2025-01-28 Show GitHub Exploit DB Packet Storm
964 - - - Cross-site scripting vulnerability exists in Simple Image Sizes 3.2.3 and earlier. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is loggin… CWE-79
Cross-site Scripting
CVE-2025-24810 2025-01-28 14:15 2025-01-28 Show GitHub Exploit DB Packet Storm
965 - - - NVIDIA vGPU software contains a vulnerability in the host driver, where it can allow a guest to cause an interrupt storm on the host, which may lead to denial of service. CWE-459
 Incomplete Cleanup
CVE-2024-53881 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm
966 - - - NVIDIA Unified Memory driver for Linux contains a vulnerability where an attacker could leak uninitialized memory. A successful exploit of this vulnerability might lead to information disclosure. CWE-459
 Incomplete Cleanup
CVE-2024-53869 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm
967 - - - NVIDIA GPU display driver for Windows and Linux contains a vulnerability where data is written past the end or before the beginning of a buffer. A successful exploit of this vulnerability might lead … CWE-787
 Out-of-bounds Write
CVE-2024-0150 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm
968 - - - NVIDIA GPU Display Driver for Linux contains a vulnerability which could allow an attacker unauthorized access to files. A successful exploit of this vulnerability might lead to limited information d… CWE-125
Out-of-bounds Read
CVE-2024-0149 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm
969 - - - NVIDIA GPU display driver for Windows and Linux contains a vulnerability where referencing memory after it has been freed can lead to denial of service or data tampering. CWE-416
 Use After Free
CVE-2024-0147 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm
970 - - - NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause memory corruption. A successful exploit of this vulnerability might lead to code executio… CWE-120
Classic Buffer Overflow
CVE-2024-0146 2025-01-28 13:15 2025-01-28 Show GitHub Exploit DB Packet Storm