Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 22, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
31 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 New CWE-noinfo
情報不足
CVE-2024-57895 2025-01-22 16:47 2024-12-10 Show GitHub Exploit DB Packet Storm
32 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2024-36476 2025-01-22 16:45 2024-12-31 Show GitHub Exploit DB Packet Storm
33 5.4 警告
Network
デル elastic cloud storage デルの elastic cloud storage における Capture-replay による認証回避に関する脆弱性 New CWE-294
Capture-replayによる認証回避
CVE-2024-52534 2025-01-22 16:44 2024-12-25 Show GitHub Exploit DB Packet Storm
34 7.2 重要
Network
フォーティネット FortiAnalyzer
FortiManager
フォーティネットの FortiAnalyzer および FortiManager におけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2024-33502 2025-01-22 16:43 2024-04-23 Show GitHub Exploit DB Packet Storm
35 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. AC8 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の AC8 ファームウェアにおける境界外書き込みに関する脆弱性 New CWE-121
CWE-787
CVE-2024-4064 2025-01-22 16:43 2024-04-23 Show GitHub Exploit DB Packet Storm
36 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. 4g300 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の 4g300 ファームウェアにおける境界外書き込みに関する脆弱性 New CWE-121
CWE-787
CVE-2024-4168 2025-01-22 16:43 2024-04-25 Show GitHub Exploit DB Packet Storm
37 7.5 重要
Network
BlackBerry QNX Software Development Platform BlackBerry の QNX Software Development Platform における境界条件の判定に関する脆弱性 New CWE-193
CWE-193
CVE-2024-48854 2025-01-22 16:43 2024-10-8 Show GitHub Exploit DB Packet Storm
38 8.8 重要
Network
XWiki xwiki XWiki の xwiki におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
CWE-352
CWE-95
CVE-2024-31986 2025-01-22 16:42 2024-04-10 Show GitHub Exploit DB Packet Storm
39 8.8 重要
Network
Stranger Studios Paid Memberships Pro Stranger Studios の WordPress 用 Paid Memberships Pro におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2024-32794 2025-01-22 16:42 2024-04-24 Show GitHub Exploit DB Packet Storm
40 5.3 警告
Network
PrestaShop PrestaShop PrestaShop における脆弱性 New CWE-200
CWE-noinfo
CVE-2024-34717 2025-01-22 16:42 2024-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 22, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275021 - joomla jd-wiki The vendor has released JD-Wiki 1.0.3 to address these issues. CWE-94
Code Injection
CVE-2007-3130 2008-11-15 15:51 2007-06-9 Show GitHub Exploit DB Packet Storm
275022 - google desktop Google Desktop allows user-assisted remote attackers to execute arbitrary programs via a man-in-the-middle attack that injects JavaScript, a www.google.com search IFRAME, and a META HTTP-EQUIV="refre… NVD-CWE-Other
CVE-2007-3150 2008-11-15 15:51 2007-06-12 Show GitHub Exploit DB Packet Storm
275023 - jelsoft vbsupport_integrated_ticket_system SQL injection vulnerability in vBSupport.php in vBSupport 1.1 before 1.1a allows remote attackers to execute arbitrary SQL commands via unspecified vectors. NVD-CWE-Other
CVE-2007-3197 2008-11-15 15:51 2007-06-13 Show GitHub Exploit DB Packet Storm
275024 - galix galix Multiple cross-site scripting (XSS) vulnerabilities in index.php in GaliX 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) galix_cat_detail, (2) galix_gal_detail, and (3)… NVD-CWE-Other
CVE-2007-2806 2008-11-15 15:50 2007-05-23 Show GitHub Exploit DB Packet Storm
275025 - apple safari Cross-domain vulnerability in Apple Safari 2.0.4 allows remote attackers to access restricted information from other domains via Javascript, as demonstrated by a js script that accesses the location … NVD-CWE-Other
CVE-2007-2843 2008-11-15 15:50 2007-05-25 Show GitHub Exploit DB Packet Storm
275026 - microsoft visual_database_tools_database_designer The NotSafe function in the MSVDTDatabaseDesigner7 ActiveX control in VDT70.DLL in Microsoft Visual Database Tools (MSVDT) Database Designer 7.0 allows remote attackers to cause a denial of service (… NVD-CWE-Other
CVE-2007-2885 2008-11-15 15:50 2007-05-30 Show GitHub Exploit DB Packet Storm
275027 - sun java_system_messaging_server Cross-site scripting (XSS) vulnerability in Sun Java System Messaging Server 6.0 through 6.3, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspec… NVD-CWE-Other
CVE-2007-2904 2008-11-15 15:50 2007-05-30 Show GitHub Exploit DB Packet Storm
275028 - jelsoft vbulletin Unspecified vulnerability in Jelsoft vBulletin before 3.6.6, when unauthenticated User Infraction Permissions is disabled, allows remote attackers to see the infraction "red flag" for a deleted user. NVD-CWE-Other
CVE-2007-2912 2008-11-15 15:50 2007-05-30 Show GitHub Exploit DB Packet Storm
275029 - mambo mambo MOStlyDB Admin in Mambo 4.6.1 does not properly check privileges, which allows remote authenticated administrators to have an unknown impact via unspecified vectors. NOTE: the provenance of this inf… NVD-CWE-Other
CVE-2007-2557 2008-11-15 15:49 2007-05-10 Show GitHub Exploit DB Packet Storm
275030 - parallels parallels_desktop Heap-based buffer overflow in the VGA device in Parallels allows local users, with root access to the guest operating system, to terminate the virtual machine and possibly execute arbitrary code in t… NVD-CWE-Other
CVE-2007-2454 2008-11-15 15:48 2007-05-3 Show GitHub Exploit DB Packet Storm