![]() |
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 3, 2025, 1:14 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
2031 | 4.8 |
警告
Network |
emlog | emlog | emlog におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 CWE-94 |
CVE-2024-12846 | 2025-01-14 18:49 | 2024-12-21 | Show | GitHub Exploit DB Packet Storm |
2032 | 9.8 |
緊急
Network codezips |
e-commerce site
|
codezips の e-commerce site における SQL インジェクションの脆弱性
|
CWE-74 |
CWE-89 CWE-89
CVE-2024-12884
|
2025-01-14 18:49 |
2024-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2033 | 5.4 |
警告
Network |
osuuu | lightpicture | osuuu の lightpicture におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 CWE-94 |
CVE-2024-13141 | 2025-01-14 18:49 | 2025-01-5 | Show | GitHub Exploit DB Packet Storm |
2034 | 7.5 |
重要
Network lunary |
lunary
|
lunary における不正な認証に関する脆弱性
|
CWE-863
|
不正な認証
CVE-2024-1738
|
2025-01-14 18:49 |
2024-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2035 | 9.1 |
緊急
Network lunary |
lunary
|
lunary における不正な認証に関する脆弱性
|
CWE-285 |
CWE-863
CVE-2024-1741
|
2025-01-14 18:49 |
2024-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2036 | 6.5 |
警告
Network |
@ScrapyProject | Scrapy | @ScrapyProject の Scrapy における非効率的な正規表現の複雑さに関する脆弱性 |
CWE-1333
非効率的な正規表現の複雑さ |
CVE-2024-1892 | 2025-01-14 18:49 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
2037 | 7.5 |
重要
Network lunary |
lunary
|
lunary における脆弱性
|
CWE-821 |
CWE-Other
CVE-2024-1902
|
2025-01-14 18:49 |
2024-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2038 | 6.5 |
警告
Network |
Mattermost, Inc. | Mattermost Server | Mattermost, Inc. の Mattermost Server における認証の欠如に関する脆弱性 |
CWE-200 CWE-862 |
CVE-2024-23493 | 2025-01-14 18:49 | 2024-02-29 | Show | GitHub Exploit DB Packet Storm |
2039 | 6.5 |
警告
Network |
Mattermost, Inc. | Mattermost Server | Mattermost, Inc. の Mattermost Server における脆弱性 |
CWE-400 CWE-noinfo |
CVE-2024-24988 | 2025-01-14 18:49 | 2024-02-29 | Show | GitHub Exploit DB Packet Storm |
2040 | 5.5 |
警告
Local |
クアルコム |
WCN3680B ファームウェア wcn3980 ファームウェア sw5100p ファームウェア WSA8835 ファームウェア WSA8830 ファームウェア WCN3660B ファームウェア sw5100 ファームウェア qcs8550 ファームウェア WCN398… |
複数のクアルコム製品における境界外読み取りに関する脆弱性 |
CWE-125 CWE-126 |
CVE-2024-33061 | 2025-01-14 18:49 | 2024-04-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 25, 2025, 4:06 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
280071 | - | x.org | x11 | An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server. |
NVD-CWE-Other
|
CVE-1999-0526 | 2008-09-9 21:34 | 1997-07-1 | Show | GitHub Exploit DB Packet Storm | |
280072 | - |
netscape university_of_washington |
messaging_server imap |
Arbitrary command execution via IMAP buffer overflow in authenticate command. |
NVD-CWE-Other
|
CVE-1999-0005 | 2008-09-9 21:33 | 1998-07-20 | Show | GitHub Exploit DB Packet Storm | |
280073 | - |
cde hp ibm |
cde hp-ux vvos aix |
Unauthorized privileged access or denial of service via dtappgather program in CDE. |
NVD-CWE-Other
|
CVE-1999-0014 | 2008-09-9 21:33 | 1998-01-21 | Show | GitHub Exploit DB Packet Storm | |
280074 | - |
cisco gnu microsoft hp netbsd sun |
ios inet winsock hp-ux windows_95 windows_nt netbsd sunos |
Land IP denial of service. |
NVD-CWE-Other
|
CVE-1999-0016 | 2008-09-9 21:33 | 1997-12-1 | Show | GitHub Exploit DB Packet Storm | |
280075 | - |
data_general ncr sgi ibm nighthawk sco sun |
dg_ux mp-ras irix aix cx_ux powerux open_desktop openserver unixware sunos |
Delete or create a file via rpc.statd, due to invalid information. |
NVD-CWE-Other
|
CVE-1999-0019 | 2008-09-9 21:33 | 1996-04-24 | Show | GitHub Exploit DB Packet Storm | |
280076 | - | muhammad_a._muquit | wwwcount | Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program. |
NVD-CWE-Other
|
CVE-1999-0021 | 2008-09-9 21:33 | 1997-11-5 | Show | GitHub Exploit DB Packet Storm | |
280077 | - |
sgi bsdi freebsd next sun |
irix bsd_os freebsd nextstep sunos |
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option. |
NVD-CWE-Other
|
CVE-1999-0032 | 2008-09-9 21:33 | 1996-10-25 | Show | GitHub Exploit DB Packet Storm | |
280078 | - | sgi | irix | fsdump command in IRIX allows local users to obtain root access by modifying sensitive files. |
NVD-CWE-Other
|
CVE-1999-0044 | 2008-09-9 21:33 | 1996-12-3 | Show | GitHub Exploit DB Packet Storm | |
280079 | - |
eric_allman bsdi caldera |
sendmail bsd_os openlinux |
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4. |
NVD-CWE-Other
|
CVE-1999-0047 | 2008-09-9 21:33 | 1997-01-28 | Show | GitHub Exploit DB Packet Storm | |
280080 | - |
debian ibm nec |
netkit aix asl_ux_4800 ews-ux_v up-ux_v |
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges. |
NVD-CWE-Other
|
CVE-1999-0048 | 2008-09-9 21:33 | 1997-01-27 | Show | GitHub Exploit DB Packet Storm |