Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249741 5 警告 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess の uaddUpAdmin.asp における管理者パスワードを変更される脆弱性 CWE-287
不適切な認証
CVE-2012-0239 2012-02-23 11:32 2012-02-21 Show GitHub Exploit DB Packet Storm
249742 7.5 危険 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess の opcImg.asp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0238 2012-02-23 11:29 2012-02-21 Show GitHub Exploit DB Packet Storm
249743 6.4 警告 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess における日付と時刻の同期設定を変更される脆弱性 CWE-119
バッファエラー
CVE-2012-0237 2012-02-23 11:27 2012-02-21 Show GitHub Exploit DB Packet Storm
249744 5 警告 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0236 2012-02-23 11:23 2012-02-21 Show GitHub Exploit DB Packet Storm
249745 6 警告 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-0235 2012-02-23 11:22 2012-02-21 Show GitHub Exploit DB Packet Storm
249746 7.5 危険 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0234 2012-02-23 11:21 2012-02-21 Show GitHub Exploit DB Packet Storm
249747 4.3 警告 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0233 2012-02-23 11:20 2012-02-21 Show GitHub Exploit DB Packet Storm
249748 10 危険 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-4526 2012-02-23 11:19 2012-02-21 Show GitHub Exploit DB Packet Storm
249749 7.5 危険 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4525 2012-02-23 11:18 2012-02-21 Show GitHub Exploit DB Packet Storm
249750 7.5 危険 Broadwin
アドバンテック株式会社
- Advantech/BroadWin WebAccess におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-4524 2012-02-23 11:02 2012-02-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313521 8.6 HIGH
Network
vonets var1200-h_firmware
var1200-l_firmware
var600-h_firmware
vap11ac_firmware
vap11g-500s_firmware
vbg1200_firmware
vap11s-5g_firmware
vap11s_firmware
var11n-300_firmware
vap11g…
Improper access control vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attacker t… CWE-284
Improper Access Control
CVE-2024-29082 2024-08-21 02:11 2024-08-12 Show GitHub Exploit DB Packet Storm
313522 9.8 CRITICAL
Network
vonets var1200-h_firmware
var1200-l_firmware
var600-h_firmware
vap11ac_firmware
vap11g-500s_firmware
vbg1200_firmware
vap11s-5g_firmware
vap11s_firmware
var11n-300_firmware
vap11g…
Use of hard-coded credentials vulnerability affecting Vonets industrial wifi bridge relays and WiFi bridge repeaters, software versions 3.3.23.6.9 and prior, enables an unauthenticated remote attack… CWE-798
 Use of Hard-coded Credentials
CVE-2024-41161 2024-08-21 02:09 2024-08-9 Show GitHub Exploit DB Packet Storm
313523 5.5 MEDIUM
Local
huawei emui
harmonyos
Access permission verification vulnerability in the Contacts module Impact: Successful exploitation of this vulnerability may affect service confidentiality. NVD-CWE-noinfo
CVE-2024-42032 2024-08-21 01:58 2024-08-8 Show GitHub Exploit DB Packet Storm
313524 7.5 HIGH
Network
huawei emui
harmonyos
Access permission verification vulnerability in the Settings module. Impact: Successful exploitation of this vulnerability may affect service confidentiality. NVD-CWE-noinfo
CVE-2024-42031 2024-08-21 01:57 2024-08-8 Show GitHub Exploit DB Packet Storm
313525 6.2 MEDIUM
Local
huawei harmonyos
emui
Access permission verification vulnerability in the content sharing pop-up module Impact: Successful exploitation of this vulnerability may affect service confidentiality. NVD-CWE-noinfo
CVE-2024-42030 2024-08-21 01:55 2024-08-8 Show GitHub Exploit DB Packet Storm
313526 9.8 CRITICAL
Network
vonets var1200-h_firmware
var1200-l_firmware
var600-h_firmware
vap11ac_firmware
vap11g-500s_firmware
vbg1200_firmware
vap11s-5g_firmware
vap11s_firmware
var11n-300_firmware
vap11g…
An improper authentication vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior enables an unauthenticated remote a… CWE-425
 Direct Request ('Forced Browsing')
CVE-2024-42001 2024-08-21 01:37 2024-08-12 Show GitHub Exploit DB Packet Storm
313527 - - - A Cross-Site Request Forgery (CSRF) in the component categorie.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges. - CVE-2024-42586 2024-08-21 01:35 2024-08-20 Show GitHub Exploit DB Packet Storm
313528 - - - A Cross-Site Request Forgery (CSRF) in the component delete_media.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges. - CVE-2024-42585 2024-08-21 01:35 2024-08-20 Show GitHub Exploit DB Packet Storm
313529 - - - A Cross-Site Request Forgery (CSRF) in the component edit_categorie.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges. - CVE-2024-42576 2024-08-21 01:35 2024-08-20 Show GitHub Exploit DB Packet Storm
313530 - - - School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at paidclass.php. - CVE-2024-42569 2024-08-21 01:35 2024-08-20 Show GitHub Exploit DB Packet Storm