Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows RT 8.1
Microsoft Windows Server …
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2019-0896 2025-01-29 18:00 2019-05-14 Show GitHub Exploit DB Packet Storm
232 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows RT 8.1
Microsoft Windows Server …
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2019-0897 2025-01-29 18:00 2019-05-14 Show GitHub Exploit DB Packet Storm
233 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows RT 8.1
Microsoft Windows Server …
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2019-0898 2025-01-29 18:00 2019-05-14 Show GitHub Exploit DB Packet Storm
234 7.8 重要
Local
マイクロソフト Microsoft Windows 8.1
Microsoft Windows 7
Microsoft Windows Server 2008
Microsoft Windows RT 8.1
Microsoft Windows Server …
複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2019-0899 2025-01-29 18:00 2019-05-14 Show GitHub Exploit DB Packet Storm
235 9.8 緊急
Network
miniOrange Miniorange OTP Verification with Firebase miniOrange の WordPress 用 Miniorange OTP Verification with Firebase におけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
CWE-639
CVE-2024-9862 2025-01-29 16:50 2024-10-17 Show GitHub Exploit DB Packet Storm
236 2.3
Local
Lenovo ThinkSystem SR670 V2 ファームウェア Lenovo の ThinkSystem SR670 V2 ファームウェアにおける脆弱性 CWE-1269
CWE-Other
CVE-2024-23591 2025-01-29 16:42 2024-02-16 Show GitHub Exploit DB Packet Storm
237 8.8 重要
Network
ZTE MF258K PRO ファームウェア ZTE の MF258K PRO ファームウェアにおける OS コマンドインジェクションの脆弱性 CWE-20
CWE-78
CVE-2024-22065 2025-01-29 16:38 2024-10-29 Show GitHub Exploit DB Packet Storm
238 7.8 重要
Local
ultralytics yolov3 Ultralytics の YOLOv3 における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2021-31681 2025-01-29 16:33 2021-04-23 Show GitHub Exploit DB Packet Storm
239 3.3
Local
オープンCADフォーマット評議会 SXF 共通ライブラリ SXF共通ライブラリにおける入力データの取り扱い不備 CWE-Other
その他
CVE-2025-24336 2025-01-29 16:32 2025-01-29 Show GitHub Exploit DB Packet Storm
240 7.1 重要
Network
Woostify Woostify Sites Library Woostify の WordPress 用 Woostify Sites Library における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2023-6279 2025-01-29 16:22 2023-11-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274461 - gentoo linux_eix Second-order symlink vulnerability in eix-sync.in in Ebuild IndeX (eix) before 0.5.0_pre2 allows local users to overwrite arbitrary files via a symlink attack on the exi.X.sync temporary file, which … NVD-CWE-Other
CVE-2005-3785 2011-03-8 11:27 2005-11-24 Show GitHub Exploit DB Packet Storm
274462 - novell zenworks
zenworks_desktops
zenworks_servers
Novell ZENworks for Desktops 4.0.1, ZENworks for Servers 3.0.2, and ZENworks 6.5 Desktop Management does not restrict access to Remote Diagnostics, which allows local users to bypass security policie… NVD-CWE-Other
CVE-2005-3786 2011-03-8 11:27 2005-11-24 Show GitHub Exploit DB Packet Storm
274463 - greywyvern orca_forum SQL injection vulnerability in forum.php in Orca Forum 4.3b and earlier allows remote attackers to execute arbitrary SQL commands via the msg parameter. NVD-CWE-Other
CVE-2005-3815 2011-03-8 11:27 2005-11-26 Show GitHub Exploit DB Packet Storm
274464 - zoneo-soft freeforum Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter or (2) thread parameter… NVD-CWE-Other
CVE-2005-3816 2011-03-8 11:27 2005-11-26 Show GitHub Exploit DB Packet Storm
274465 - comdev comdev_vote_caster SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a result action. NVD-CWE-Other
CVE-2005-3825 2011-03-8 11:27 2005-11-26 Show GitHub Exploit DB Packet Storm
274466 - ezy_helpdesk ezyhelpdesk Multiple SQL injection vulnerabilities in Ezyhelpdesk 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) edit_id, (2) faq_id, and (3) c_id parameters in a query string, and (4) … NVD-CWE-Other
CVE-2005-3826 2011-03-8 11:27 2005-11-26 Show GitHub Exploit DB Packet Storm
274467 - agileco agilebill SQL injection vulnerability in product_cat in AgileBill 1.4.92 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2005-3827 2011-03-8 11:27 2005-11-27 Show GitHub Exploit DB Packet Storm
274468 - activecampaign knowledgebuilder SQL injection vulnerability in index.php in ActiveCampaign KnowledgeBuilder 2.4 and earlier allows remote attackers to execute arbitrary SQL commands via the article parameter. NVD-CWE-Other
CVE-2005-3828 2011-03-8 11:27 2005-11-27 Show GitHub Exploit DB Packet Storm
274469 - activecampaign knowledgebuilder index.php in ActiveCampaign KnowledgeBuilder 2.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an invalid category parameter, which causes a large number of S… NVD-CWE-Other
CVE-2005-3829 2011-03-8 11:27 2005-11-27 Show GitHub Exploit DB Packet Storm
274470 - - - index.php in ActiveCampaign SupportTrio 1.4 and earlier allows remote attackers to read or include arbitrary files via the page parameter, possibly due to a directory traversal vulnerability. NVD-CWE-Other
CVE-2005-3830 2011-03-8 11:27 2005-11-27 Show GitHub Exploit DB Packet Storm