Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198481 7.8 危険 マイクロソフト
AOL
- AIM におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3437 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198482 6.8 警告 e107.org - e107 の signup.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3429 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198483 4.3 警告 access2asp - access2asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3414 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198484 4.3 警告 bitego - bosDataGrid におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3413 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198485 4.3 警告 clicktech - ClickGallery Server の edit_image.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3412 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198486 7.5 危険 dia - Dia における詳細不明な脆弱性 - CVE-2007-3408 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198487 7.5 危険 dreamlog - dreamLog の upload.php における uploads/images/ 配下の任意の PHP コードをアップロードされる脆弱性 - CVE-2007-3403 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198488 7.5 危険 b1g - B1G b1gBB の footer.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3401 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198489 7.5 危険 endonesia - eNdonesia における SQL インジェクションの脆弱性 - CVE-2007-3394 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
198490 9.3 危険 アップル
マイクロソフト
- Apple Safari におけるバッファオーバーフローの脆弱性 - CVE-2007-3376 2012-06-26 15:46 2007-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
961 4.3 MEDIUM
Network
- - MapUrlToZone Security Feature Bypass Vulnerability CWE-41
 Improper Resolution of Path Equivalence
CVE-2025-21189 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
962 7.8 HIGH
Local
- - Microsoft Power Automate Remote Code Execution Vulnerability CWE-94
Code Injection
CVE-2025-21187 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
963 7.8 HIGH
Local
- - Microsoft Access Remote Code Execution Vulnerability CWE-122
Heap-based Buffer Overflow
CVE-2025-21186 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
964 8.8 HIGH
Network
- - Visual Studio Remote Code Execution Vulnerability CWE-125
CWE-122
Out-of-bounds Read
Heap-based Buffer Overflow
CVE-2025-21178 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
965 8.8 HIGH
Network
- - .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability CWE-126
 Buffer Over-read
CVE-2025-21176 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
966 7.5 HIGH
Network
- - .NET and Visual Studio Remote Code Execution Vulnerability CWE-190
CWE-122
 Integer Overflow or Wraparound
Heap-based Buffer Overflow
CVE-2025-21172 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
967 7.5 HIGH
Network
- - .NET Remote Code Execution Vulnerability CWE-122
Heap-based Buffer Overflow
CVE-2025-21171 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
968 - - - A vulnerability was found in AquilaCMS 1.412.13. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/v2/categories. The manipulation of the argument P… CWE-20
CWE-502
 Improper Input Validation 
 Deserialization of Untrusted Data
CVE-2025-0465 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
969 - - - Rejected reason: Unused spare CVE - CVE-2024-53996 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm
970 - - - Improper signature verification in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to achieve remote code ex… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2024-13172 2025-01-15 03:15 2025-01-15 Show GitHub Exploit DB Packet Storm