|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3261 | 6.5 |
警告
Network |
Anviz Global |
Anviz CX7 Firmware Anviz CX2 Lite Firmware |
Anviz GlobalのAnviz CX2 Lite Firmware等の複数製品における重要な情報の平文での送信に関する脆弱性 |
CWE-319
重要な情報の平文での送信 |
CVE-2026-33569 | 2026-05-7 11:30 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3262 | 4.3 |
警告
Network |
SAP |
SAP HANA Database Explorer SAP HANA Cockpit |
SAPのSAP HANA Cockpit等の複数製品における認証情報の不十分な保護に関する脆弱性 |
CWE-522
認証情報の不十分な保護 |
CVE-2026-34262 | 2026-05-7 11:30 | 2026-04-14 | Show | GitHub Exploit DB Packet Storm |
| 3263 | 5.3 |
警告
Network |
Anviz Global | Anviz CX7 Firmware | Anviz GlobalのAnviz CX7 Firmwareにおける認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2026-35061 | 2026-05-7 11:30 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3264 | 9.8 |
緊急
Network |
Anviz Global |
Anviz CX7 Firmware Anviz CX2 Lite Firmware |
Anviz GlobalのAnviz CX2 Lite Firmware等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-35546 | 2026-05-7 11:30 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3265 | 8.8 |
重要
Network |
Anviz Global | Anviz CX2 Lite Firmware | Anviz GlobalのAnviz CX2 Lite Firmwareにおけるコマンドインジェクションの脆弱性 |
CWE-77
コマンドインジェクション |
CVE-2026-35682 | 2026-05-7 11:29 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3266 | 7.5 |
重要
Network |
Belkin International | N300 firmware | U-SpeedのN300 Firmwareにおけるリソースの枯渇に関する脆弱性 |
CWE-400
リソースの枯渇 |
CVE-2026-36958 | 2026-05-7 11:29 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 3267 | 7.5 |
重要
Network |
Belkin International | N300 firmware | U-SpeedのN300 Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 |
CWE-307
過度な認証試行の不適切な制限 |
CVE-2026-36959 | 2026-05-7 11:29 | 2026-04-30 | Show | GitHub Exploit DB Packet Storm |
| 3268 | 8.8 |
重要
Network |
Anviz Global |
Anviz CX7 Firmware Anviz CX2 Lite Firmware |
Anviz GlobalのAnviz CX2 Lite Firmware等の複数製品におけるダウンロードしたコードの完全性検証不備に関する脆弱性 |
CWE-494
ダウンロードしたコードの完全性検証不備 |
CVE-2026-40066 | 2026-05-7 11:29 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3269 | 8.1 |
重要
Adjacent |
Anviz Global | Crosschex Standard | Anviz GlobalのCrosschex Standardにおける通信チャネルの送信元の不適切な検証に関する脆弱性 |
CWE-940
通信チャネルの送信元の不適切な検証 |
CVE-2026-40434 | 2026-05-7 11:29 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
| 3270 | 7.5 |
重要
Network |
Anviz Global |
Anviz CX7 Firmware Anviz CX2 Lite Firmware |
Anviz GlobalのAnviz CX2 Lite Firmware等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 |
CWE-306
重要な機能に対する認証の欠如 解説 |
CVE-2026-40461 | 2026-05-7 11:29 | 2026-04-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 313381 | 7.5 |
HIGH
Network |
oisf | suricata | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, rules using datasets with the non-functional / unimplemen… |
CWE-617
Reachable Assertion |
CVE-2024-45795 | 2024-10-22 22:35 | 2024-10-17 | Show | GitHub Exploit DB Packet Storm |
| 313382 | 9.0 |
CRITICAL
Adjacent |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Netlogon Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38124 | 2024-10-22 22:35 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313383 | 6.6 |
MEDIUM
Network |
microsoft | windows_server_2022_23h2 | Windows Kerberos Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38129 | 2024-10-22 22:05 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313384 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_11_24h2 windows_10_1607 windows_server_2019 | BranchCache Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38149 | 2024-10-22 21:55 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313385 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38262 | 2024-10-22 21:54 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313386 | 8.8 |
HIGH
Local |
microsoft | azure_stack_hci | Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-38179 | 2024-10-22 21:54 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313387 | - | - | - | ScienceLogic SL1 (formerly EM7) is affected by an unspecified vulnerability involving an unspecified third-party component packaged with SL1. The vulnerability is addressed in SL1 versions 12.1.3+, 1… | - | CVE-2024-9537 | 2024-10-22 10:00 | 2024-10-19 | Show | GitHub Exploit DB Packet Storm | |
| 313388 | 7.4 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Remote Desktop Services Tampering Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43456 | 2024-10-22 06:28 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313389 | 7.8 |
HIGH
Local |
microsoft |
365_apps excel office office_long_term_servicing_channel |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2024-43504 | 2024-10-22 06:26 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
| 313390 | 5.4 |
MEDIUM
Network |
exceedone | exment | Stored cross-site scripting vulnerability exists in Exment v6.1.4 and earlier and Exment v5.0.11 and earlier. When accessing the edit screen containing custom columns (column type: images or files), … |
CWE-79
Cross-site Scripting |
CVE-2024-47793 | 2024-10-22 06:25 | 2024-10-18 | Show | GitHub Exploit DB Packet Storm |