Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197851 9.3 危険 アップル - Apple QuickTime Player および iTunes におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5406 2012-06-26 16:03 2008-12-10 Show GitHub Exploit DB Packet Storm
197852 10 危険 grid2000 - FlexCell Grid ActiveX Component における任意ファイルを作成される脆弱性 CWE-Other
その他
CVE-2008-5404 2012-06-26 16:03 2008-12-10 Show GitHub Exploit DB Packet Storm
197853 10 危険 Cerulean Studios - Trillian の AIM プラグインの XML パーサにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5403 2012-06-26 16:03 2008-12-10 Show GitHub Exploit DB Packet Storm
197854 10 危険 Cerulean Studios - Trillian の XML パーサにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2008-5402 2012-06-26 16:03 2008-12-10 Show GitHub Exploit DB Packet Storm
197855 10 危険 Cerulean Studios - Trillian の image tooltip 実装におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5401 2012-06-26 16:03 2008-12-10 Show GitHub Exploit DB Packet Storm
197856 7.2 危険 Digium - Zaptel の torisa.c ライバにおけるカーネルメモリの整数値を上書きされる脆弱性 CWE-189
数値処理の問題
CVE-2008-5396 2012-06-26 16:03 2008-12-8 Show GitHub Exploit DB Packet Storm
197857 7.2 危険 Debian - Debian GNU/Linux などの shadow の /bin/login における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5394 2012-06-26 16:03 2008-11-9 Show GitHub Exploit DB Packet Storm
197858 9.3 危険 ffdshow-tryout - ffdshow の URL 処理におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5381 2012-06-26 16:03 2008-12-8 Show GitHub Exploit DB Packet Storm
197859 6.9 警告 gpsdrive - gpsdrive-scripts における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5380 2012-06-26 16:03 2008-12-8 Show GitHub Exploit DB Packet Storm
197860 6.9 警告 アップル - CUPS の pstopdf における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5377 2012-06-26 16:03 2008-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 5, 2025, 4:56 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
991 - - - SSRF vulnerability in Edit Service Page of Apache Ranger UI in Apache Ranger Version 2.4.0. Users are recommended to upgrade to version Apache Ranger 2.5.0, which fixes this issue. - CVE-2024-45479 2025-01-28 06:15 2025-01-22 Show GitHub Exploit DB Packet Storm
992 - - - Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signature computation. Impact summary: A timing side-channel in ECDSA signature comp… - CVE-2024-13176 2025-01-28 06:15 2025-01-20 Show GitHub Exploit DB Packet Storm
993 6.3 MEDIUM
Network
- - A vulnerability classified as critical has been found in Axiomatic Bento4 up to 1.6.0. This affects the function AP4_BitReader::ReadBits of the component mp42aac. The manipulation leads to heap-based… CWE-119
CWE-122
Incorrect Access of Indexable Resource ('Range Error') 
Heap-based Buffer Overflow
CVE-2025-0751 2025-01-28 05:15 2025-01-28 Show GitHub Exploit DB Packet Storm
994 - - - Network access can be used to execute arbitrary code with elevated privileges. This issue affects FLXEON 9.3.4 and older. CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2024-48841 2025-01-28 05:15 2025-01-28 Show GitHub Exploit DB Packet Storm
995 4.7 MEDIUM
Network
- - A vulnerability has been found in y_project RuoYi up to 4.8.0 and classified as critical. This vulnerability affects the function getBeanName of the component Whitelist. The manipulation leads to des… CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2025-0734 2025-01-28 04:15 2025-01-28 Show GitHub Exploit DB Packet Storm
996 - - - Cacti is an open source performance and fault management framework. Some of the data stored in automation_tree_rules.php is not thoroughly checked and is used to concatenate the SQL statement in buil… - CVE-2025-24368 2025-01-28 04:15 2025-01-28 Show GitHub Exploit DB Packet Storm
997 - - - Cacti is an open source performance and fault management framework. An authenticated Cacti user can abuse graph creation and graph template functionality to create arbitrary PHP scripts in the web ro… - CVE-2025-24367 2025-01-28 04:15 2025-01-28 Show GitHub Exploit DB Packet Storm
998 9.8 CRITICAL
Network
sonicwall sma8200v
sma6200_firmware
sma6210_firmware
sma7200_firmware
sma7210_firmware
sra_ex6000_firmware
sra_ex7000_firmware
sra_ex9000_firmware
Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific condit… - CVE-2025-23006 2025-01-28 03:41 2025-01-23 Show GitHub Exploit DB Packet Storm
999 - - - vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Attacker can obtain owner rights of other organization. Hacker should know the ID of victim o… CWE-284
Improper Access Control
CVE-2025-24365 2025-01-28 03:15 2025-01-28 Show GitHub Exploit DB Packet Storm
1000 - - - vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. Attacker with authenticated access to the vaultwarden admin panel can execute arbitrary code … CWE-74
Injection
CVE-2025-24364 2025-01-28 03:15 2025-01-28 Show GitHub Exploit DB Packet Storm