Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 8, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198861 7.5 危険 all enthusiast inc - All Enthusiast ReviewPost の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4864 2012-06-26 15:37 2006-09-19 Show GitHub Exploit DB Packet Storm
198862 7.5 危険 easypagecms - easypage の default.aspx における SQL インジェクションの脆弱性 - CVE-2006-4862 2012-06-26 15:37 2006-09-19 Show GitHub Exploit DB Packet Storm
198863 7.5 危険 clicktech - ClickTech ClickBlog の default.asp における SQL インジェクションの脆弱性 - CVE-2006-4857 2012-06-26 15:37 2006-09-19 Show GitHub Exploit DB Packet Storm
198864 7.5 危険 bolinos - BolinOS の system/_b/contentFiles/gBHTMLEditor.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4851 2012-06-26 15:37 2006-09-18 Show GitHub Exploit DB Packet Storm
198865 5.1 警告 bolinos - BolinOS の system/_b/contentFiles/gBIndex.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4850 2012-06-26 15:37 2006-09-18 Show GitHub Exploit DB Packet Storm
198866 5.1 警告 シトリックス・システムズ - Citrix Access Gateway with AAC における認証を回避される脆弱性 - CVE-2006-4846 2012-06-26 15:37 2006-09-14 Show GitHub Exploit DB Packet Storm
198867 5.1 警告 george lewe - TeamCal Pro の includes/footer.html.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4845 2012-06-26 15:37 2006-09-18 Show GitHub Exploit DB Packet Storm
198868 5.1 警告 Claroline Consortium
Dokeos
- Dokeos などの製品で使用される Claroline の inc/claro_init_local.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4844 2012-06-26 15:37 2006-09-18 Show GitHub Exploit DB Packet Storm
198869 4.3 警告 codeworx technologies - DCP-Portal SE におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4838 2012-06-26 15:37 2006-09-15 Show GitHub Exploit DB Packet Storm
198870 7.5 危険 codeworx technologies - DCP-Portal SE における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4837 2012-06-26 15:37 2006-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 8, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
441 6.7 MEDIUM
Local
- - Memory corruption while invoking IOCTL calls to unmap the DMA buffers. New CWE-416
 Use After Free
CVE-2024-33055 2025-01-6 20:15 2025-01-6 Show GitHub Exploit DB Packet Storm
442 6.7 MEDIUM
Local
- - Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, New CWE-823
 Use of Out-of-range Pointer Offset
CVE-2024-33041 2025-01-6 20:15 2025-01-6 Show GitHub Exploit DB Packet Storm
443 6.6 MEDIUM
Local
- - Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size. New CWE-126
 Buffer Over-read
CVE-2024-23366 2025-01-6 20:15 2025-01-6 Show GitHub Exploit DB Packet Storm
444 8.4 HIGH
Local
- - Memory corruption while processing IPA statistics, when there are no active clients registered. New CWE-120
Classic Buffer Overflow
CVE-2024-21464 2025-01-6 20:15 2025-01-6 Show GitHub Exploit DB Packet Storm
445 - - - A vulnerability classified as critical was found in zhenfeng13 My-Blog 1.0. Affected by this vulnerability is the function upload of the file src/main/java/com/site/blog/my/core/controller/admin/uplo… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-13145 2025-01-6 10:15 2025-01-6 Show GitHub Exploit DB Packet Storm
446 - - - A vulnerability classified as critical has been found in zhenfeng13 My-Blog 1.0. Affected is the function uploadFileByEditomd of the file src/main/java/com/site/blog/my/core/controller/admin/BlogCont… New CWE-284
CWE-434
Improper Access Control
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-13144 2025-01-6 09:15 2025-01-6 Show GitHub Exploit DB Packet Storm
447 - - - A vulnerability was found in ZeroWdd studentmanager 1.0. It has been rated as problematic. This issue affects the function submitAddPermission of the file src/main/java/com/zero/system/controller/Per… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-13143 2025-01-6 09:15 2025-01-6 Show GitHub Exploit DB Packet Storm
448 - - - A vulnerability was found in Codezips Project Management System 1.0. It has been classified as critical. This affects an unknown part of the file /pages/forms/course.php. The manipulation of the argu… New CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0233 2025-01-6 08:15 2025-01-6 Show GitHub Exploit DB Packet Storm
449 - - - A vulnerability was found in ZeroWdd studentmanager 1.0. It has been declared as problematic. This vulnerability affects the function submitAddRole of the file src/main/java/com/zero/system/controlle… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-13142 2025-01-6 08:15 2025-01-6 Show GitHub Exploit DB Packet Storm
450 - - - A vulnerability was found in Codezips Blood Bank Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /successadmin.php. The manipulation… New CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0232 2025-01-6 07:15 2025-01-6 Show GitHub Exploit DB Packet Storm