You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 19, 2025, noon
Update Date:Jan. 19, 2025, 4:13 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
961 | 4.3 |
MEDIUM
Network |
- | - | MapUrlToZone Security Feature Bypass Vulnerability |
CWE-41
Improper Resolution of Path Equivalence |
CVE-2025-21189 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
962 | 7.8 |
HIGH
Local |
- | - | Microsoft Power Automate Remote Code Execution Vulnerability |
CWE-94
Code Injection |
CVE-2025-21187 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
963 | 7.8 |
HIGH
Local |
- | - | Microsoft Access Remote Code Execution Vulnerability |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21186 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
964 | 8.8 |
HIGH
Network |
- | - | Visual Studio Remote Code Execution Vulnerability |
CWE-125 CWE-122 Out-of-bounds Read Heap-based Buffer Overflow |
CVE-2025-21178 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
965 | 8.8 |
HIGH
Network |
- | - | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability |
CWE-126
Buffer Over-read |
CVE-2025-21176 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
966 | 7.5 |
HIGH
Network |
- | - | .NET and Visual Studio Remote Code Execution Vulnerability |
CWE-190 CWE-122 Integer Overflow or Wraparound Heap-based Buffer Overflow |
CVE-2025-21172 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
967 | 7.5 |
HIGH
Network |
- | - | .NET Remote Code Execution Vulnerability |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21171 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
968 | - | - | - | A vulnerability was found in AquilaCMS 1.412.13. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/v2/categories. The manipulation of the argument P… |
CWE-20 CWE-502 Improper Input Validation Deserialization of Untrusted Data |
CVE-2025-0465 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
969 | - | - | - | Rejected reason: Unused spare CVE | - | CVE-2024-53996 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
970 | - | - | - | Improper signature verification in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to achieve remote code ex… |
CWE-347
Improper Verification of Cryptographic Signature |
CVE-2024-13172 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |