Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 8, 2025, 12:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198741 5.1 警告 facestones - faceStones Personal の fsl2/objects/fs_form_links.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5070 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198742 7.5 危険 brudaswen - Brudaswen BrudaNews の admin/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5068 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198743 5.1 警告 danphpsupport - DanPHPSupport におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5066 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198744 5.1 警告 BirdBlog - BirdBlog におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5064 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198745 7.5 危険 advanced-clan-script - AVC の mcf.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5061 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198746 7.5 危険 Activision Publishing - Call of Duty におけるバッファオーバーフローの脆弱性 - CVE-2006-5058 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198747 7.5 危険 forum one - syntaxCMS の admin/testing/tests/0004_init_urls.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5055 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198748 7.5 危険 fiwin - FiWin SS28S WiFi VoIP SIP/Skype Phone における管理者のアクセス権を取得される脆弱性 - CVE-2006-5038 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198749 5 警告 Cake Software Foundation - Cake Software Foundation CakePHP の app/Webroot/js/vendors.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5031 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
198750 7.5 危険 exv2 - exV2 の modules/messages/index.php における SQL インジェクションの脆弱性 - CVE-2006-5030 2012-06-26 15:37 2006-09-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 8, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
611 - - - Missing Authorization vulnerability in Xtemos WoodMart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WoodMart: from n/a through 7.2.1. CWE-862
 Missing Authorization
CVE-2023-32240 2025-01-3 00:15 2025-01-3 Show GitHub Exploit DB Packet Storm
612 - - - In the Linux kernel, the following vulnerability has been resolved: media: s5p_cec: limit msg.len to CEC_MAX_MSG_SIZE I expect that the hardware will have limited this to 16, but just in case it ha… - CVE-2022-49035 2025-01-3 00:15 2025-01-3 Show GitHub Exploit DB Packet Storm
613 - - - Missing Authorization vulnerability in Analytify.This issue affects Analytify: from n/a through 4.2.3. CWE-862
 Missing Authorization
CVE-2022-45830 2025-01-3 00:15 2025-01-3 Show GitHub Exploit DB Packet Storm
614 - - - Missing Authorization vulnerability in Daniel Söderström / Sidney van de Stouwe Subscribe to Category allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Subscr… CWE-862
 Missing Authorization
CVE-2022-43476 2025-01-3 00:15 2025-01-3 Show GitHub Exploit DB Packet Storm
615 - - - Missing Authorization vulnerability in Galleryape Gallery Images Ape allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gallery Images Ape: from n/a through 2.… CWE-862
 Missing Authorization
CVE-2022-41995 2025-01-3 00:15 2025-01-3 Show GitHub Exploit DB Packet Storm
616 - - - Cross-Site Request Forgery (CSRF) vulnerability in VolThemes Patricia Blog allows Cross Site Request Forgery.This issue affects Patricia Blog: from n/a through 1.2. CWE-352
 Origin Validation Error
CVE-2024-38732 2025-01-2 23:15 2025-01-2 Show GitHub Exploit DB Packet Storm
617 - - - Cross-Site Request Forgery (CSRF) vulnerability in Marsian i-amaze allows Cross Site Request Forgery.This issue affects i-amaze: from n/a through 1.3.7. CWE-352
 Origin Validation Error
CVE-2024-38731 2025-01-2 23:15 2025-01-2 Show GitHub Exploit DB Packet Storm
618 - - - Cross-Site Request Forgery (CSRF) vulnerability in Creativthemes Point allows Cross Site Request Forgery.This issue affects Point: from n/a through 1.1. CWE-352
 Origin Validation Error
CVE-2024-37931 2025-01-2 23:15 2025-01-2 Show GitHub Exploit DB Packet Storm
619 - - - Cross-Site Request Forgery (CSRF) vulnerability in BUDDYBOSS LLC BuddyBoss Theme allows Cross Site Request Forgery.This issue affects BuddyBoss Theme: from n/a through 2.4.61. CWE-352
 Origin Validation Error
CVE-2024-37925 2025-01-2 23:15 2025-01-2 Show GitHub Exploit DB Packet Storm
620 - - - Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop Schema Lite allows Cross Site Request Forgery.This issue affects Schema Lite: from n/a through 1.2.2. CWE-352
 Origin Validation Error
CVE-2024-37452 2025-01-2 23:15 2025-01-2 Show GitHub Exploit DB Packet Storm