Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 12, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202861 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6 から 9 におけるコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-0010 2012-02-20 18:24 2012-02-14 Show GitHub Exploit DB Packet Storm
202862 9.3 危険 マイクロソフト - Microsoft Internet Explorer 7 から 9 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0011 2012-02-20 18:22 2012-02-14 Show GitHub Exploit DB Packet Storm
202863 4.3 警告 マイクロソフト - Microsoft Internet Explorer 9 におけるデータを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-0012 2012-02-20 18:20 2012-02-14 Show GitHub Exploit DB Packet Storm
202864 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0155 2012-02-20 18:18 2012-02-14 Show GitHub Exploit DB Packet Storm
202865 4.3 警告 マイクロソフト - Microsoft SharePoint Foundation 2010 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0017 2012-02-20 18:16 2012-02-14 Show GitHub Exploit DB Packet Storm
202866 4.3 警告 マイクロソフト - Microsoft Office SharePoint の themeweb.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0144 2012-02-20 18:14 2012-02-14 Show GitHub Exploit DB Packet Storm
202867 4.3 警告 マイクロソフト - Microsoft Office SharePoint の wizardlist.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0145 2012-02-20 18:12 2012-02-14 Show GitHub Exploit DB Packet Storm
202868 9.3 危険 マイクロソフト - Microsoft Windows の msvcrt.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0150 2012-02-20 18:10 2012-02-14 Show GitHub Exploit DB Packet Storm
202869 9.3 危険 マイクロソフト - Microsoft Visio Viewer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0019 2012-02-20 18:08 2012-02-14 Show GitHub Exploit DB Packet Storm
202870 9.3 危険 マイクロソフト - Microsoft Visio Viewer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0020 2012-02-20 18:06 2012-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 12, 2025, 4:59 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
701 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HashThemes Hash Elements.This issue affects Hash Elements: from n/a through 1.4.9. CWE-79
Cross-site Scripting
CVE-2025-22296 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
702 - - - A vulnerability classified as critical was found in code-projects Online Book Shop 1.0. Affected by this vulnerability is an unknown functionality of the file /subcat.php. The manipulation of the arg… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0300 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
703 - - - In SiWx91x devices, the SHA2/224 algorithm returns a hash of 256 bits instead of 224 bits. This incorrect hash length triggers a software assertion, which subsequently causes a Denial of Service (DoS… - CVE-2024-8361 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
704 - - - Missing Authorization vulnerability in ThemeSupport Hide Category by User Role for WooCommerce.This issue affects Hide Category by User Role for WooCommerce: from n/a through 2.1.1. CWE-862
 Missing Authorization
CVE-2024-56272 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
705 - - - Missing Authorization vulnerability in SecureSubmit WP SecureSubmit.This issue affects WP SecureSubmit: from n/a through 1.5.16. CWE-862
 Missing Authorization
CVE-2024-56270 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
706 - - - Various module chromes didn't properly process inputs, leading to XSS vectors. - CVE-2024-40747 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
707 - - - An attacker who successfully exploited these vulnerabilities could cause enable command execution. A vulnerability exists in the AC500 V3 version mentioned. After successfully exploiting CVE-2024-124… CWE-280
Improper Handling of Insufficient Permissions or Privileges 
CVE-2024-12430 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
708 - - - An attacker who successfully exploited these vulnerabilities could grant read access to files. A vulnerability exists in the AC500 V3 version mentioned. A successfully authenticated attacker can use… CWE-22
Path Traversal
CVE-2024-12429 2025-01-8 02:15 2025-01-8 Show GitHub Exploit DB Packet Storm
709 - - - An issue was discovered in Inspur ClusterEngine v4.0 that allows attackers to gain escalated Local privileges and execute arbitrary commands via /opt/tsce4/torque6/bin/getJobsByShell. - CVE-2021-27285 2025-01-8 02:15 2025-01-7 Show GitHub Exploit DB Packet Storm
710 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Burria Laika Pedigree Tree allows Stored XSS.This issue affects Laika Pedigree Tree: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-22593 2025-01-8 01:15 2025-01-8 Show GitHub Exploit DB Packet Storm