You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 20, 2025, 6:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
331 | 8.8 |
重要
Network |
Huawei | FusionCompute ファームウェア | Huawei の FusionCompute ファームウェアにおける脆弱性 |
CWE-451 CWE-noinfo |
CVE-2020-9236 | 2025-01-17 16:21 | 2020-02-18 | Show | GitHub Exploit DB Packet Storm |
332 | 7.8 |
重要
Local |
Linux | Linux Kernel | Linux の Linux Kernel における有効期限後のメモリの解放の欠如に関する脆弱性 |
CWE-401 CWE-416 |
CVE-2024-26734 | 2025-01-17 16:21 | 2024-02-20 | Show | GitHub Exploit DB Packet Storm |
333 | 5.4 |
警告
Network |
Themeisle | RSS Aggregator by Feedzy | ThemeIsle の WordPress 用 RSS Aggregator by Feedzy におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2023-6877 | 2025-01-17 16:20 | 2023-12-15 | Show | GitHub Exploit DB Packet Storm |
334 | 5.3 |
警告
Network Huawei |
HarmonyOS
|
Huawei の HarmonyOS における認証に関する脆弱性
|
CWE-287 |
CWE-287
CVE-2024-56445
|
2025-01-17 16:20 |
2024-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
335 | 7.5 |
重要
Network Huawei |
HarmonyOS
|
Huawei の HarmonyOS における脆弱性
|
CWE-20 |
CWE-noinfo
CVE-2024-54121
|
2025-01-17 16:20 |
2024-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
336 | 7.5 |
重要
Network Huawei |
EMUI |
HarmonyOS
Huawei の EMUI および HarmonyOS における不適切なデフォルトパーミッションに関する脆弱性
|
CWE-269 |
CWE-276
CVE-2024-56447
|
2025-01-17 16:20 |
2024-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
337 | 7.5 |
重要
Network Huawei |
EMUI |
HarmonyOS
Huawei の EMUI および HarmonyOS における脆弱性
|
CWE-840 |
CWE-noinfo
CVE-2024-56438
|
2025-01-17 16:20 |
2024-12-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
338 | 5.5 |
警告
Local |
クアルコム |
qam8775p ファームウェア QCA6595 ファームウェア sa8650p ファームウェア sa8540p ファームウェア QAM8295P ファームウェア qamsrv1h ファームウェア QCA6696 ファームウェア sa7775p ファームウェア sa87… |
複数のクアルコム製品における境界外読み取りに関する脆弱性 |
CWE-125 CWE-126 |
CVE-2024-45559 | 2025-01-17 16:18 | 2024-09-2 | Show | GitHub Exploit DB Packet Storm |
339 | 7.8 |
重要
Local |
Linux | Linux Kernel | Linux の Linux Kernel における解放済みメモリの使用に関する脆弱性 |
CWE-416
解放済みメモリの使用 |
CVE-2021-47341 | 2025-01-17 16:18 | 2021-07-14 | Show | GitHub Exploit DB Packet Storm |
340 | 8.8 |
重要
Network |
Shenzhen Tenda Technology Co.,Ltd. | FH1202 ファームウェア | Shenzhen Tenda Technology Co.,Ltd. の FH1202 ファームウェアにおける境界外書き込みに関する脆弱性 |
CWE-121 CWE-787 |
CVE-2024-2986 | 2025-01-17 16:17 | 2024-03-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 21, 2025, 4:11 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
441 | 8.8 |
HIGH
Network |
chrome | Out of bounds read in Metrics in Google Chrome prior to 132.0.6834.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
CWE-125
Out-of-bounds Read |
CVE-2025-0437 | 2025-01-17 05:35 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm | |
442 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_11_23h2 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_21h2 windows_10_22h2 windows_11_… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21417 | 2025-01-17 05:34 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
443 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21413 | 2025-01-17 05:33 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
444 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21411 | 2025-01-17 05:33 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
445 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Telephony Service Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2025-21409 | 2025-01-17 05:33 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
446 | - | - | - | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in carrotbits Greek Namedays Widget From Eortologio.Net allows Stored XSS.This issue affects Greek N… |
CWE-79
Cross-site Scripting |
CVE-2025-23783 | 2025-01-17 05:15 | 2025-01-17 | Show | GitHub Exploit DB Packet Storm | |
447 | - | - | - | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Revolutionart Marmoset Viewer allows Stored XSS.This issue affects Marmoset Viewer: from n/a thro… |
CWE-79
Cross-site Scripting |
CVE-2025-23767 | 2025-01-17 05:15 | 2025-01-17 | Show | GitHub Exploit DB Packet Storm | |
448 | - | - | - | Cross-Site Request Forgery (CSRF) vulnerability in Mahdi Khaksar mybb Last Topics allows Stored XSS.This issue affects mybb Last Topics: from n/a through 1.0. |
CWE-352
Origin Validation Error |
CVE-2025-23749 | 2025-01-17 05:15 | 2025-01-17 | Show | GitHub Exploit DB Packet Storm | |
449 | - | - | - | Cross-Site Request Forgery (CSRF) vulnerability in Tussendoor internet & marketing Call me Now allows Stored XSS.This issue affects Call me Now: from n/a through 1.0.5. |
CWE-352
Origin Validation Error |
CVE-2025-23745 | 2025-01-17 05:15 | 2025-01-17 | Show | GitHub Exploit DB Packet Storm | |
450 | - | - | - | Cross-Site Request Forgery (CSRF) vulnerability in Martijn Scheybeler Social Analytics allows Stored XSS.This issue affects Social Analytics: from n/a through 0.2. |
CWE-352
Origin Validation Error |
CVE-2025-23743 | 2025-01-17 05:15 | 2025-01-17 | Show | GitHub Exploit DB Packet Storm |