Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 9, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203011 3.5 注意 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0117 2012-01-23 16:18 2012-01-17 Show GitHub Exploit DB Packet Storm
203012 3.5 注意 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0112 2012-01-23 16:18 2012-01-17 Show GitHub Exploit DB Packet Storm
203013 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0495 2012-01-23 16:11 2012-01-17 Show GitHub Exploit DB Packet Storm
203014 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0491 2012-01-23 16:01 2012-01-17 Show GitHub Exploit DB Packet Storm
203015 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0489 2012-01-23 15:58 2012-01-17 Show GitHub Exploit DB Packet Storm
203016 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0488 2012-01-23 15:57 2012-01-17 Show GitHub Exploit DB Packet Storm
203017 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0487 2012-01-23 15:55 2012-01-17 Show GitHub Exploit DB Packet Storm
203018 5 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0486 2012-01-23 15:54 2012-01-17 Show GitHub Exploit DB Packet Storm
203019 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0485 2012-01-23 15:52 2012-01-17 Show GitHub Exploit DB Packet Storm
203020 4 警告 オラクル - Oracle MySQL の MySQL Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2012-0120 2012-01-23 15:50 2012-01-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 9, 2025, 4:56 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1821 - - - A specially crafted message can be sent to the TTLock App that downgrades the encryption protocol used for communication, and can be utilized to compromise the lock, such as through revealing the unl… - CVE-2023-7005 2024-12-21 03:15 2024-12-20 Show GitHub Exploit DB Packet Storm
1822 - - - Disclosure of sensitive information in HikVision camera driver's log file in XProtect Device Pack allows an attacker to read camera credentials stored in the Recording Server under specific condition… - CVE-2024-12569 2024-12-21 03:15 2024-12-19 Show GitHub Exploit DB Packet Storm
1823 - - - A unrestricted upload of file with dangerous type vulnerability in epaper draft function in Corporate Training Management System before 10.13 allows remote authenticated users to bypass file upload r… - CVE-2024-11984 2024-12-21 03:15 2024-12-19 Show GitHub Exploit DB Packet Storm
1824 - - - Delta Electronics DTM Soft deserializes objects, which could allow an attacker to execute arbitrary code. CWE-502
 Deserialization of Untrusted Data
CVE-2024-12677 2024-12-21 02:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1825 - - - Oqtane Framework is vulnerable to Insecure Direct Object Reference (IDOR) in Oqtane.Controllers.UserController. This allows unauthorized users to access sensitive information of other users by manipu… - CVE-2024-55471 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1826 - - - Oqtane Framework 6.0.0 is vulnerable to Incorrect Access Control. By manipulating the entityid parameter, attackers can bypass passcode validation and successfully log into the application or access … - CVE-2024-55470 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1827 - - - An IDOR (Insecure Direct Object Reference) vulnerability exists in oqtane Framework 6.0.0, allowing a logged-in user to access inbox messages of other users by manipulating the notification ID in the… - CVE-2024-55186 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1828 5.0 MEDIUM
Network
- - A server-side request forgery exists in Satellite. When a PUT HTTP request is made to /http_proxies/test_connection, when supplied with the http_proxies variable set to localhost, the attacker can fe… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-12840 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1829 - - - Ticket management system in DirectAdmin Evolution Skin is vulnerable to XSS (Cross-site Scripting), which allows a low-privileged user to inject and store malicious JavaScript code. If an admin views… - CVE-2024-10385 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm
1830 - - - Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.1, from 10.1.0-M1 through 10.1.33, from 9.0.0.M1 throu… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2024-56337 2024-12-21 01:15 2024-12-21 Show GitHub Exploit DB Packet Storm