You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Feb. 3, 2025, 1:14 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
206141 | 4.3 | 警告 | Ruby on Rails project | - | Ruby on Rails におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4319 | 2011-11-29 16:26 | 2011-11-28 | Show | GitHub Exploit DB Packet Storm |
206142 | 4.3 | 警告 | Combodo | - | Combodo iTop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4275 | 2011-11-29 16:23 | 2011-11-26 | Show | GitHub Exploit DB Packet Storm |
206143 | 9.3 | 危険 | SunPlus Electronics | - | DVR Remote ActiveX コントロールの DVRemoteAx.ax における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-3828 | 2011-11-29 16:22 | 2011-11-26 | Show | GitHub Exploit DB Packet Storm |
206144 | 6.8 | 警告 | IBM | - | IBM TS3100 および TS3200 テープ・ライブラリにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-1372 | 2011-11-29 16:15 | 2011-11-23 | Show | GitHub Exploit DB Packet Storm |
206145 | 1.9 | 注意 | ヒューレット・パッカード IBM |
- | IBM WebSphere MQ における listener プロセス強制終了の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-1378 | 2011-11-29 16:14 | 2011-11-26 | Show | GitHub Exploit DB Packet Storm |
206146 | 5 | 警告 | シスコシステムズ | - | Cisco Secure Access Control System における任意のユーザのパスワードを変更される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-0951 | 2011-11-29 10:38 | 2011-03-30 | Show | GitHub Exploit DB Packet Storm |
206147 | 5 | 警告 | シスコシステムズ | - | Cisco Network Access Control Guest Server におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-0963 | 2011-11-29 10:37 | 2011-03-30 | Show | GitHub Exploit DB Packet Storm |
206148 | 9.3 | 危険 | シスコシステムズ | - | Cisco Secure Desktop における意図しないプログラムをダウンロードされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0925 | 2011-11-29 10:37 | 2011-02-28 | Show | GitHub Exploit DB Packet Storm |
206149 | 9.3 | 危険 | シスコシステムズ | - | Cisco Secure Desktop における意図しないプログラムをダウンロードされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0926 | 2011-11-29 10:35 | 2011-02-25 | Show | GitHub Exploit DB Packet Storm |
206150 | 7.5 | 危険 | シスコシステムズ | - | Cisco TelePresence Recording サーバにおける不特定な操作を実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-0392 | 2011-11-29 10:35 | 2011-02-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 3, 2025, 4:07 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1481 | - | - | - | A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining ale… | - | CVE-2025-23196 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
1482 | - | - | - | An XML External Entity (XXE) vulnerability exists in the Ambari/Oozie project, allowing an attacker to inject malicious XML entities. This vulnerability occurs due to insecure parsing of XML input … | - | CVE-2025-23195 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
1483 | - | - | - | A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processin… | - | CVE-2024-51941 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
1484 | - | - | - | The List category posts WordPress plugin before 0.90.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which cou… | - | CVE-2024-9020 | 2025-01-23 00:15 | 2025-01-18 | Show | GitHub Exploit DB Packet Storm | |
1485 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21329 | 2025-01-23 00:02 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
1486 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21328 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
1487 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21327 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
1488 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 |
Internet Explorer Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21326 | 2025-01-22 23:48 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
1489 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2… |
Windows Kernel Memory Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21323 | 2025-01-22 23:47 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
1490 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21324 | 2025-01-22 23:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |