You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 16, 2025, 4:04 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
251 | 7.5 |
重要
Network Huawei |
HarmonyOS |
EMUI
Huawei の EMUI および HarmonyOS における不適切なデフォルトパーミッションに関する脆弱性
New
|
CWE-264 |
CWE-276
CVE-2024-56440
|
2025-01-15 13:36 |
2024-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
252 | 7 |
重要
Local |
Ivanti | connect secure | Ivanti の connect secure における境界外書き込みに関する脆弱性 New |
CWE-121 CWE-787 |
CVE-2025-0283 | 2025-01-15 13:36 | 2025-01-8 | Show | GitHub Exploit DB Packet Storm |
253 | 8.8 |
重要
Network |
Shenzhen Tenda Technology Co.,Ltd. | AC18 ファームウェア | Shenzhen Tenda Technology Co.,Ltd. の AC18 ファームウェアにおける境界外書き込みに関する脆弱性 New |
CWE-121 CWE-787 |
CVE-2024-2486 | 2025-01-15 13:36 | 2024-03-15 | Show | GitHub Exploit DB Packet Storm |
254 | 8.8 |
重要
Network |
Synology Inc. | Surveillance Station | Synology Inc. の Surveillance Station における SQL インジェクションの脆弱性 New |
CWE-89
SQLインジェクション |
CVE-2024-29238 | 2025-01-15 13:36 | 2024-03-28 | Show | GitHub Exploit DB Packet Storm |
255 | 7.8 |
重要
Local |
クアルコム |
fastconnect 7800 ファームウェア wsa8845h ファームウェア sc8380xp ファームウェア WCD9385 ファームウェア wsa8845 ファームウェア fastconnect 6900 ファームウェア wsa8840 ファームウェア W… |
複数のクアルコム製品における配列インデックスの検証に関する脆弱性 New |
CWE-129
配列インデックスの不適切な検証 |
CVE-2024-45550 | 2025-01-15 13:36 | 2024-09-2 | Show | GitHub Exploit DB Packet Storm |
256 | 6.7 |
警告
Local |
マイクロソフト |
Microsoft Windows Server 2022 Microsoft Windows 10 Microsoft Windows Server 2012 Microsoft Windows Server 2016 Microsoft Window… |
セキュア ブートのセキュリティ機能のバイパスの脆弱性 New |
CWE-693 CWE-noinfo |
CVE-2024-26250 | 2025-01-15 12:39 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
257 | 7.8 |
重要
Local |
マイクロソフト | Microsoft Windows 10 | Windows SMB の特権の昇格の脆弱性 New |
CWE-125 CWE-noinfo |
CVE-2024-26245 | 2025-01-15 12:35 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
258 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Windows Server 2022 Microsoft Windows 10 Microsoft Windows Server 2012 Microsoft Windows Server 2016 Microsoft Window… |
Windows Telephony Server の特権の昇格の脆弱性 New |
CWE-122 CWE-noinfo |
CVE-2024-26239 | 2025-01-15 12:31 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
259 | 7.8 |
重要
Local |
マイクロソフト | Microsoft Windows Server 2022 | Windows Update スタックの特権の昇格の脆弱性 New |
CWE-306 CWE-noinfo |
CVE-2024-26235 | 2025-01-15 12:26 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
260 | 6.6 |
警告
Network |
マイクロソフト |
Microsoft Windows Server 2022 Microsoft Windows Server 2016 Microsoft Windows Server 2019 |
Windows DNS サーバーのリモートでコードが実行される脆弱性 New |
CWE-416 CWE-noinfo |
CVE-2024-26231 | 2025-01-15 12:10 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
301 | 6.5 |
MEDIUM
Network |
- | - | Windows Security Account Manager (SAM) Denial of Service Vulnerability New |
CWE-833
Deadlock |
CVE-2025-21313 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
302 | 2.4 |
LOW
Physics |
- | - | Windows Smart Card Reader Information Disclosure Vulnerability New |
CWE-908
Use of Uninitialized Resource |
CVE-2025-21312 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
303 | 9.8 |
CRITICAL
Network
-
|
-
|
Windows NTLM V1 Elevation of Privilege Vulnerability
New
|
CWE-303
|
Incorrect Implementation of Authentication Algorithm
CVE-2025-21311
|
2025-01-15 03:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
304 | 6.6 |
MEDIUM
Physics |
- | - | Windows Digital Media Elevation of Privilege Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21310 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
305 | 8.1 |
HIGH
Network |
- | - | Windows Remote Desktop Services Remote Code Execution Vulnerability New |
CWE-591
Sensitive Data Storage in Improperly Locked Memory |
CVE-2025-21309 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
306 | 6.5 |
MEDIUM
Network |
- | - | Windows Themes Spoofing Vulnerability New |
CWE-200
Information Exposure |
CVE-2025-21308 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
307 | 9.8 |
CRITICAL
Network
-
|
-
|
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
New
|
CWE-416
|
Use After Free
CVE-2025-21307
|
2025-01-15 03:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
308 | 8.8 |
HIGH
Network |
- | - | Windows Telephony Service Remote Code Execution Vulnerability New |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21306 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
309 | 8.8 |
HIGH
Network |
- | - | Windows Telephony Service Remote Code Execution Vulnerability New |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21305 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
310 | 7.8 |
HIGH
Local |
- | - | Microsoft DWM Core Library Elevation of Privilege Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21304 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |