Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Oct. 21, 2024, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201691 1 注意 オラクル - Oracle Database および Oracle Application Server の Unzip コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3412 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
201692 3.2 注意 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3413 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
201693 3.6 注意 オラクル - Oracle Database の RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3410 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
201694 4 警告 オラクル - Oracle Database の Logical Standby コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1996 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
201695 4.9 警告 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3414 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
201696 4.9 警告 オラクル - Oracle Database の Oracle Data Pump コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3411 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
201697 6 警告 オラクル - Oracle Database の Application Express Application Builder コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0076 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
201698 9 危険 オラクル - Oracle Database の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3415 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
201699 10 危険 オラクル - Oracle Database の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0071 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
201700 5 警告 Pidgin
Adium
レッドハット
- Pidgin および Adium の MSN プロトコルプラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0013 2010-02-10 13:39 2010-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Oct. 10, 2024, 8:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
491 - microsoft sharepoint_services
sharepoint_server
internet_explorer
Cross-site scripting (XSS) vulnerability in the toStaticHTML function in Microsoft Internet Explorer 8, and the SafeHTML function in Microsoft Windows SharePoint Services 3.0 SP2 and Office SharePoin… CWE-79
Cross-site Scripting
CVE-2010-3243 2024-10-18 06:35 2010-10-14 Show GitHub Exploit DB Packet Storm
492 - microsoft windows_server_2008
windows_xp
windows_vista
windows_server_2003
windows_2003_server
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, and Windows Server 2008 Gold and SP2 do not properly validate us… CWE-20
 Improper Input Validation 
CVE-2010-1896 2024-10-18 06:35 2010-08-12 Show GitHub Exploit DB Packet Storm
493 - microsoft windows_server_2008
windows_xp
windows_7
windows_server_2003
windows_vista
Heap-based buffer overflow in the Local Security Authority Subsystem Service (LSASS), as used in Active Directory in Microsoft Windows Server 2003 SP2 and Windows Server 2008 Gold, SP2, and R2; Activ… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-0820 2024-10-18 06:35 2010-09-16 Show GitHub Exploit DB Packet Storm
494 6.5 MEDIUM
Network
microsoft office
365_apps
office_long_term_servicing_channel
Microsoft Office Spoofing Vulnerability NVD-CWE-noinfo
CVE-2024-43609 2024-10-18 06:18 2024-10-9 Show GitHub Exploit DB Packet Storm
495 7.8 HIGH
Local
microsoft deepspeed DeepSpeed Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-43497 2024-10-18 06:15 2024-10-9 Show GitHub Exploit DB Packet Storm
496 6.6 MEDIUM
Network
microsoft azure_service_fabric Azure Service Fabric for Linux Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-43480 2024-10-18 06:14 2024-10-9 Show GitHub Exploit DB Packet Storm
497 7.8 HIGH
Local
thinkst opencanary OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file. Prior to version 0.9.4, where the config file is stored in an unprivileged user directory but the… CWE-863
 Incorrect Authorization
CVE-2024-48911 2024-10-18 06:13 2024-10-15 Show GitHub Exploit DB Packet Storm
498 8.8 HIGH
Network
dueclic wp_2fa_with_telegram The WP 2FA with Telegram plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 3.0. This is due to insufficient validation of the user-controlled key on the 'v… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-9687 2024-10-18 06:11 2024-10-15 Show GitHub Exploit DB Packet Storm
499 4.3 MEDIUM
Network
elementor website_builder The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Basic Information Exposure in all versions up to, and including, 3.23.5 via the get_image_alt funct… NVD-CWE-noinfo
CVE-2024-6757 2024-10-18 06:09 2024-10-15 Show GitHub Exploit DB Packet Storm
500 7.8 HIGH
Local
microsoft windows_server_2008
windows_server_2012
windows_10_1507
windows_server_2016
windows_server_2022_23h2
windows_10_1809
windows_server_2022
windows_10_1607
windows_server_2019
Windows Common Log File System Driver Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-43501 2024-10-18 06:06 2024-10-9 Show GitHub Exploit DB Packet Storm