|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 232801 | 7.5 | 危険 | searchactivity | - | Searchactivity の searchbot.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-2329 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232802 | 7.5 | 危険 | phpmytgp | - | phpMYTGP の addvip.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-2328 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232803 | 10 | 危険 | SilverStripe | - | SilverStripe の検索機能における脆弱性 | - | CVE-2007-2321 | 2012-12-20 18:19 | 2007-04-17 | Show | GitHub Exploit DB Packet Storm |
| 232804 | 7.5 | 危険 | VWar | - | PHP-Nuke 用の VWar モジュールにおける SQL インジェクションの脆弱性 | - | CVE-2007-2312 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232805 | 7.5 | 危険 | webkalk2 | - | WebKalk2 の engine/engine.inc.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-2307 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232806 | 4.3 | 警告 | VWar | - | PHP-Nuke 用の VWar モジュールにおけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-2306 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232807 | 7.5 | 危険 | qdblog | - | QDBlog の authenticate.php における SQL インジェクションの脆弱性 | - | CVE-2007-2305 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232808 | 7.5 | 危険 | qdblog | - | QDBlog におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-2304 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232809 | 4.3 | 警告 | surat kabar | - | Endy Kristanto Surat kabar / News Management Online におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-2300 | 2012-12-20 18:19 | 2007-04-26 | Show | GitHub Exploit DB Packet Storm |
| 232810 | 7.5 | 危険 | wf-links | - | XOOPS 用の WF-Links モジュールにおける SQL インジェクションの脆弱性 | - | CVE-2007-2373 | 2012-12-20 18:19 | 2005-06-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 315001 | 9.0 |
CRITICAL
Adjacent |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Netlogon Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38124 | 2024-10-22 22:35 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315002 | 6.6 |
MEDIUM
Network |
microsoft | windows_server_2022_23h2 | Windows Kerberos Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38129 | 2024-10-22 22:05 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315003 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_11_24h2 windows_10_1607 windows_server_2019 | BranchCache Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38149 | 2024-10-22 21:55 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315004 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38262 | 2024-10-22 21:54 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315005 | 8.8 |
HIGH
Local |
microsoft | azure_stack_hci | Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38179 | 2024-10-22 21:54 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315006 | - | - | - | ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an unspecified third-party component packaged with SL1. The vulnerability is addressed in SL1 versions 12.1.3+, 1… | - | CVE-2024-9537 | 2024-10-22 10:00 | 2024-10-19 | Show | GitHub Exploit DB Packet Storm | |
| 315007 | 7.4 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Remote Desktop Services Tampering Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43456 | 2024-10-22 06:28 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315008 | 7.8 |
HIGH
Local |
microsoft |
365_apps excel office office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43504 | 2024-10-22 06:26 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 315009 | 5.4 |
MEDIUM
Network |
exceedone | exment | Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier. When accessing the edit screen containing custom columns (column type: images or files), … |
CWE-79
Cross-site Scripting |
CVE-2024-47793 | 2024-10-22 06:25 | 2024-10-18 | Show | GitHub Exploit DB Packet Storm |
| 315010 | 9.8 |
CRITICAL
Network |
microsoft | visual_studio_code | Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector. |
NVD-CWE-noinfo
|
CVE-2024-43488 | 2024-10-22 06:05 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |