|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 232031 | 4.3 | 警告 | sonicbb | - | SonicBB における重要な情報を取得される脆弱性 | - | CVE-2007-1901 | 2012-12-20 18:19 | 2007-05-14 | Show | GitHub Exploit DB Packet Storm |
| 232032 | 6.5 | 警告 | WordPress.org | - | WordPress の xmlrpc における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-1897 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
| 232033 | 5.8 | 警告 | sky gunning | - | Sky GUNNING MySpeach の chat.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-1896 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
| 232034 | 6.8 | 警告 | sky gunning | - | Sky GUNNING MySpeach の chat.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-1895 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
| 232035 | 4.3 | 警告 | WordPress.org | - | WordPress の wp-includes/general-template.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-1894 | 2012-12-20 18:19 | 2007-03-9 | Show | GitHub Exploit DB Packet Storm |
| 232036 | 4.9 | 警告 | WordPress.org | - | WordPress の xmlrpc におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-1893 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
| 232037 | 7.8 | 危険 | VMware | - | VMware Workstation におけるゲスト OS がサービス運用妨害 (DoS) 状態となる脆弱性 | - | CVE-2007-1877 | 2012-12-20 18:19 | 2007-05-2 | Show | GitHub Exploit DB Packet Storm |
| 232038 | 7.2 | 危険 | VMware | - | VMware Workstation における "仮想マシンに登録されたコンテキストが破損" する脆弱性 | - | CVE-2007-1876 | 2012-12-20 18:19 | 2007-05-2 | Show | GitHub Exploit DB Packet Storm |
| 232039 | 4.3 | 警告 | toenda software development | - | toendaCMS におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-1872 | 2012-12-20 18:19 | 2007-04-13 | Show | GitHub Exploit DB Packet Storm |
| 232040 | 7.5 | 危険 | webasyst llc | - | Shop-Script FREE の smarty/smarty_class.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-1855 | 2012-12-20 18:19 | 2007-04-3 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313891 | 7.3 |
HIGH
Local |
siemens |
modelsim questa |
A vulnerability has been identified in ModelSim (All versions < V2024.3), Questa (All versions < V2024.3). vsimk.exe in affected applications allows a specific tcl file to be loaded from the current … |
CWE-427
Uncontrolled Search Path Element |
CVE-2024-47196 | 2024-10-17 03:07 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313892 | 7.8 |
HIGH
Local |
schneider-electric | zelio_soft_2 | CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 … |
CWE-416
Use After Free |
CVE-2024-8422 | 2024-10-17 03:00 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313893 | 8.4 |
HIGH
Network |
payara | payara | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Payara Platform Payara Server (Admin Console modules) allows Remote Code Inclusion.This is… |
CWE-79
Cross-site Scripting |
CVE-2024-8215 | 2024-10-17 02:58 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313894 | 6.7 |
MEDIUM
Local |
microsoft |
windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_11_24h2 windows_10_1607 windows_10_1809 windows_11_21h2 windows… |
Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37976 | 2024-10-17 02:56 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313895 | 8.8 |
HIGH
Network |
xerox | freeflow_core | Authenticated RCE via Path Traversal |
CWE-22
Path Traversal |
CVE-2024-47559 | 2024-10-17 02:53 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313896 | 8.8 |
HIGH
Network |
xerox | freeflow_core | Authenticated RCE via Path Traversal |
CWE-22
Path Traversal |
CVE-2024-47558 | 2024-10-17 02:45 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313897 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_11_24h2 windows_10_1607 windows_10_1809 windows_11_21h2 windows… |
Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37982 | 2024-10-17 02:43 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313898 | 5.5 |
MEDIUM
Local |
openatom | openharmony | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause DOS through out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2024-45382 | 2024-10-17 02:43 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313899 | 5.5 |
MEDIUM
Local |
openatom | openharmony | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause DOS through improper input. |
NVD-CWE-noinfo
|
CVE-2024-43697 | 2024-10-17 02:42 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |
| 313900 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_server_2016 windows_server_2022 windows_server_2019 |
Windows Kernel Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-37979 | 2024-10-17 02:41 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |