You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 15, 2025, 6:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
281 | 8.2 |
重要
Network マイクロソフト |
Microsoft SharePoint Server |
Microsoft SharePoint Enterprise Server
Microsoft SharePoint の特権の昇格の脆弱性
New
|
CWE-284 |
CWE-noinfo
CVE-2024-49068
|
2025-01-14 15:13 |
2024-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
282 | 7.8 |
重要
Local |
マイクロソフト | Microsoft Office | Microsoft Office の特権の昇格の脆弱性 New |
CWE-284 CWE-noinfo |
CVE-2024-43600 | 2025-01-14 15:10 | 2024-12-10 | Show | GitHub Exploit DB Packet Storm |
283 | 7.8 |
重要
Local |
Outlook.com | Microsoft Edge Chromium | Microsoft Edge (HTML ベース) のメモリ破損の脆弱性 New |
CWE-119 CWE-787 CWE-843 |
CVE-2024-38218 | 2025-01-14 15:06 | 2024-08-8 | Show | GitHub Exploit DB Packet Storm |
284 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Windows 11 Microsoft Windows Server 2022 Microsoft Windows 10 |
Windows Update スタックの特権の昇格の脆弱性 New |
CWE-284 CWE-noinfo |
CVE-2024-38163 | 2025-01-14 15:02 | 2024-08-13 | Show | GitHub Exploit DB Packet Storm |
285 | 4.8 |
警告
Network |
FreeScout | FreeScout | FreeScout における危険なタイプのファイルの無制限アップロードに関する脆弱性 New |
CWE-434
危険なタイプのファイルの無制限アップロード |
CVE-2024-1932 | 2025-01-14 14:59 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
286 | 6.5 |
警告
Network Royal Elementor Addons |
Royal Elementor Addons and Templates
|
Royal Elementor Addons の WordPress 用 Royal Elementor Addons and Templates におけるクロスサイトスクリプティングの脆弱性
New
|
CWE-79
|
クロスサイト・スクリプティング(XSS)
CVE-2024-2798
|
2025-01-14 14:59 |
2024-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
287 | 9.8 |
緊急
Network PbootCMS |
PbootCMS
|
PbootCMS におけるコードインジェクションの脆弱性
New
|
CWE-74 |
CWE-94 CWE-94
CVE-2024-12789
|
2025-01-14 14:59 |
2024-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
288 | 6.1 |
警告
Network |
anisha | job recruitment | anisha の job recruitment におけるクロスサイトスクリプティングの脆弱性 New |
CWE-79 CWE-79 CWE-94 |
CVE-2024-12883 | 2025-01-14 14:59 | 2024-12-21 | Show | GitHub Exploit DB Packet Storm |
289 | 5.4 |
警告
Network |
mysiteforme project | mysiteforme | wangl1989 の mysiteforme におけるクロスサイトスクリプティングの脆弱性 New |
CWE-79 CWE-79 CWE-94 |
CVE-2024-13137 | 2025-01-14 14:59 | 2025-01-5 | Show | GitHub Exploit DB Packet Storm |
290 | 8.8 |
重要
Network |
mysiteforme project | mysiteforme | wangl1989 の mysiteforme における危険なタイプのファイルの無制限アップロードに関する脆弱性 New |
CWE-284 CWE-434 CWE-434 |
CVE-2024-13138 | 2025-01-14 14:59 | 2025-01-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 16, 2025, 4:15 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
271 | 6.7 |
MEDIUM
Local |
- | - | Microsoft Outlook Remote Code Execution Vulnerability New |
CWE-908
Use of Uninitialized Resource |
CVE-2025-21357 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
272 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-122 CWE-843 Heap-based Buffer Overflow Type Confusion |
CVE-2025-21356 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
273 | 7.2 |
HIGH
Network |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-285
Improper Authorization |
CVE-2025-21348 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
274 | 7.1 |
HIGH
Local |
- | - | Microsoft Office Security Feature Bypass Vulnerability New |
CWE-693
Protection Mechanism Failure |
CVE-2025-21346 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
275 | 7.8 |
HIGH
Local |
- | - | Microsoft Office Visio Remote Code Execution Vulnerability New |
CWE-416
Use After Free |
CVE-2025-21345 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
276 | 7.8 |
HIGH
Local |
- | - | Microsoft SharePoint Server Remote Code Execution Vulnerability New |
CWE-20
Improper Input Validation |
CVE-2025-21344 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
277 | 7.5 |
HIGH
Network
-
|
-
|
Windows Web Threat Defense User Service Information Disclosure Vulnerability
New
|
CWE-269
|
Improper Privilege Management
CVE-2025-21343
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
278 | - | - | - | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Wikimedia Foundation Mediawiki - OpenBadges Extension allows Cross-Site Scripting (XSS).Th… New | - | CVE-2025-23080 | 2025-01-15 03:16 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
279 | 6.6 |
MEDIUM
Physics |
- | - | Windows Digital Media Elevation of Privilege Vulnerability New |
CWE-125
Out-of-bounds Read |
CVE-2025-21341 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
280 | 5.5 |
MEDIUM
Local |
- | - | Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability New |
CWE-284
Improper Access Control |
CVE-2025-21340 | 2025-01-15 03:15 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |