You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 15, 2025, 6:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
281 | 8.2 |
重要
Network マイクロソフト |
Microsoft SharePoint Server |
Microsoft SharePoint Enterprise Server
Microsoft SharePoint の特権の昇格の脆弱性
New
|
CWE-284 |
CWE-noinfo
CVE-2024-49068
|
2025-01-14 15:13 |
2024-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
282 | 7.8 |
重要
Local |
マイクロソフト | Microsoft Office | Microsoft Office の特権の昇格の脆弱性 New |
CWE-284 CWE-noinfo |
CVE-2024-43600 | 2025-01-14 15:10 | 2024-12-10 | Show | GitHub Exploit DB Packet Storm |
283 | 7.8 |
重要
Local |
Outlook.com | Microsoft Edge Chromium | Microsoft Edge (HTML ベース) のメモリ破損の脆弱性 New |
CWE-119 CWE-787 CWE-843 |
CVE-2024-38218 | 2025-01-14 15:06 | 2024-08-8 | Show | GitHub Exploit DB Packet Storm |
284 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Windows 11 Microsoft Windows Server 2022 Microsoft Windows 10 |
Windows Update スタックの特権の昇格の脆弱性 New |
CWE-284 CWE-noinfo |
CVE-2024-38163 | 2025-01-14 15:02 | 2024-08-13 | Show | GitHub Exploit DB Packet Storm |
285 | 4.8 |
警告
Network |
FreeScout | FreeScout | FreeScout における危険なタイプのファイルの無制限アップロードに関する脆弱性 New |
CWE-434
危険なタイプのファイルの無制限アップロード |
CVE-2024-1932 | 2025-01-14 14:59 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
286 | 6.5 |
警告
Network Royal Elementor Addons |
Royal Elementor Addons and Templates
|
Royal Elementor Addons の WordPress 用 Royal Elementor Addons and Templates におけるクロスサイトスクリプティングの脆弱性
New
|
CWE-79
|
クロスサイト・スクリプティング(XSS)
CVE-2024-2798
|
2025-01-14 14:59 |
2024-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
287 | 9.8 |
緊急
Network PbootCMS |
PbootCMS
|
PbootCMS におけるコードインジェクションの脆弱性
New
|
CWE-74 |
CWE-94 CWE-94
CVE-2024-12789
|
2025-01-14 14:59 |
2024-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
288 | 6.1 |
警告
Network |
anisha | job recruitment | anisha の job recruitment におけるクロスサイトスクリプティングの脆弱性 New |
CWE-79 CWE-79 CWE-94 |
CVE-2024-12883 | 2025-01-14 14:59 | 2024-12-21 | Show | GitHub Exploit DB Packet Storm |
289 | 5.4 |
警告
Network |
mysiteforme project | mysiteforme | wangl1989 の mysiteforme におけるクロスサイトスクリプティングの脆弱性 New |
CWE-79 CWE-79 CWE-94 |
CVE-2024-13137 | 2025-01-14 14:59 | 2025-01-5 | Show | GitHub Exploit DB Packet Storm |
290 | 8.8 |
重要
Network |
mysiteforme project | mysiteforme | wangl1989 の mysiteforme における危険なタイプのファイルの無制限アップロードに関する脆弱性 New |
CWE-284 CWE-434 CWE-434 |
CVE-2024-13138 | 2025-01-14 14:59 | 2025-01-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
261 | 7.8 |
HIGH
Local |
- | - | Windows CSC Service Elevation of Privilege Vulnerability New |
CWE-122
Heap-based Buffer Overflow |
CVE-2025-21378 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
262 | 5.5 |
MEDIUM
Local |
- | - | Windows CSC Service Information Disclosure Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21374 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
263 | 7.8 |
HIGH
Local |
- | - | Microsoft Brokering File System Elevation of Privilege Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21372 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
264 | 7.8 |
HIGH
Local |
- | - | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21370 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
265 | 7.8 |
HIGH
Local |
- | - | Microsoft Access Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21366 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
266 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Remote Code Execution Vulnerability New |
CWE-426
Untrusted Search Path |
CVE-2025-21365 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
267 | 7.8 |
HIGH
Local |
- | - | Microsoft Excel Security Feature Bypass Vulnerability New |
CWE-502
Deserialization of Untrusted Data |
CVE-2025-21364 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
268 | 7.8 |
HIGH
Local |
- | - | Microsoft Word Remote Code Execution Vulnerability New |
CWE-822
Untrusted Pointer Dereference |
CVE-2025-21363 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
269 | 7.8 |
HIGH
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-641
Improper Restriction of Names for Files and Other Resources |
CVE-2025-21361 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
270 | 7.8 |
HIGH
Local |
- | - | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability New |
CWE-269
Improper Privilege Management |
CVE-2025-21360 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |