Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 10, 2025, 12:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
31 7.1 重要
Network
Contao contao Contao におけるセッション期限に関する脆弱性 New CWE-384
CWE-613
CWE-613
CVE-2024-30262 2025-01-10 11:19 2024-04-9 Show GitHub Exploit DB Packet Storm
32 7.3 重要
Local
Eclipse Foundation Eclipse OpenJ9 Eclipse Foundation の Eclipse OpenJ9 における境界外読み取りに関する脆弱性 New CWE-125
CWE-125
CWE-787
CWE-787
CWE-805
CVE-2024-3933 2025-01-10 11:19 2024-05-27 Show GitHub Exploit DB Packet Storm
33 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows Remote Access Connection Manager の情報漏えいの脆弱性 New CWE-125
CWE-126
CVE-2024-28902 2025-01-10 11:13 2024-04-9 Show GitHub Exploit DB Packet Storm
34 6.3 警告
Adjacent
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 New CWE-121
CWE-noinfo
CVE-2024-28898 2025-01-10 11:11 2024-04-9 Show GitHub Exploit DB Packet Storm
35 6.8 警告
Physics
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows rndismp6.sys のリモートでコードが実行される脆弱性 New CWE-20
CWE-noinfo
CVE-2024-26253 2025-01-10 11:07 2024-04-9 Show GitHub Exploit DB Packet Storm
36 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 New CWE-416
CWE-noinfo
CVE-2024-26233 2025-01-10 11:04 2024-04-9 Show GitHub Exploit DB Packet Storm
37 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 New CWE-416
CWE-noinfo
CVE-2024-26222 2025-01-10 11:02 2024-04-9 Show GitHub Exploit DB Packet Storm
38 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microso…
DHCP Server サービスのサービス拒否の脆弱性 New CWE-400
CWE-noinfo
CVE-2024-26215 2025-01-10 10:59 2024-04-9 Show GitHub Exploit DB Packet Storm
39 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 New CWE-122
CWE-noinfo
CVE-2024-26200 2025-01-10 10:54 2024-04-9 Show GitHub Exploit DB Packet Storm
40 7.2 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microso…
DHCP Server Service のリモートでコードが実行される脆弱性 New CWE-122
CWE-noinfo
CVE-2024-26195 2025-01-10 10:51 2024-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 10, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277341 - omnicron omnihttpd statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter. NVD-CWE-Other
CVE-2001-0114 2008-09-6 05:23 2001-03-12 Show GitHub Exploit DB Packet Storm
277342 - oliver_debon flash Buffer overflow in Olivier Debon Flash plugin (not the Macromedia plugin) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long DefineSound tag. NVD-CWE-Other
CVE-2001-0127 2008-09-6 05:23 2001-03-12 Show GitHub Exploit DB Packet Storm
277343 - trend_micro interscan_viruswall Interscan VirusWall 3.6.x and earlier follows symbolic links when uninstalling the product, which allows local users to overwrite arbitrary files via a symlink attack. NVD-CWE-Other
CVE-2001-0132 2008-09-6 05:23 2001-03-12 Show GitHub Exploit DB Packet Storm
277344 - trend_micro interscan_viruswall The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers to obtain the administrator password to sniff the administrator … NVD-CWE-Other
CVE-2001-0133 2008-09-6 05:23 2001-03-12 Show GitHub Exploit DB Packet Storm
277345 - van_dyke_technologies vshell Format string vulnerability in VShell SSH gateway 1.0.1 and earlier allows remote attackers to execute arbitrary commands via a user name that contains format string specifiers. NVD-CWE-Other
CVE-2001-0155 2008-09-6 05:23 2001-06-2 Show GitHub Exploit DB Packet Storm
277346 - lucent
orinoco
wavelan
orinoco_wavelan
Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will l… NVD-CWE-Other
CVE-2001-0160 2008-09-6 05:23 2001-01-1 Show GitHub Exploit DB Packet Storm
277347 - cisco aironet Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks. NVD-CWE-Other
CVE-2001-0161 2008-09-6 05:23 2001-01-1 Show GitHub Exploit DB Packet Storm
277348 - cisco aironet_ap340 Cisco AP340 base station produces predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections. NVD-CWE-Other
CVE-2001-0163 2008-09-6 05:23 2001-01-1 Show GitHub Exploit DB Packet Storm
277349 - free_java_web_server free_java_web_server Directory traversal vulnerability in Free Java Web Server 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack. NVD-CWE-Other
CVE-2001-0186 2008-09-6 05:23 2001-05-3 Show GitHub Exploit DB Packet Storm
277350 - davide_libenzi xmail Buffer overflows in CTRLServer in XMail allows attackers to execute arbitrary commands via the cfgfileget or domaindel functions. NVD-CWE-Other
CVE-2001-0192 2008-09-6 05:23 2001-05-3 Show GitHub Exploit DB Packet Storm