Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 24, 2025, 6:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
31 7.8 重要
Local
PHOENIX CONTACT charx sec-3000 ファームウェア
charx sec-3150 ファームウェア
charx sec-3050 ファームウェア
charx sec-3100 ファームウェア
複数の PHOENIX CONTACT 製品における信頼できない検索パスに関する脆弱性 New CWE-426
信頼性のない検索パス
CVE-2024-28133 2025-01-24 14:47 2024-05-14 Show GitHub Exploit DB Packet Storm
32 6.1 警告
Network
Basixonline NEX-Forms Basixonline の WordPress 用 NEX-Forms におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-47389 2025-01-24 14:47 2024-10-5 Show GitHub Exploit DB Packet Storm
33 5.3 警告
Network
Nextcloud Nextcloud Server Nextcloud の Nextcloud Server における脆弱性 New CWE-328
CWE-Other
CVE-2024-52521 2025-01-24 14:47 2024-11-15 Show GitHub Exploit DB Packet Storm
34 7.8 重要
Local
インテル graphics performance analyzers インテルの graphics performance analyzers における不適切なデフォルトパーミッションに関する脆弱性 New CWE-276
CWE-276
CVE-2023-24460 2025-01-24 14:47 2023-03-2 Show GitHub Exploit DB Packet Storm
35 5.5 警告
Local
IObit Protected Folder IObit の Protected Folder における NULL ポインタデリファレンスに関する脆弱性 New CWE-404
CWE-476
CWE-476
CVE-2025-0222 2025-01-24 14:47 2025-01-5 Show GitHub Exploit DB Packet Storm
36 8.8 重要
Network
truepush truepush Truepush の WordPress 用 Truepush - Most Affordable Web Push Notifications における認証の欠如に関する脆弱性 Update CWE-862
認証の欠如
CVE-2024-44021 2025-01-24 14:42 2024-11-1 Show GitHub Exploit DB Packet Storm
37 6.5 警告
Network
PHPGurukul Hostel Management System surya2developer の Hostel Management System におけるアクセス制御に関する脆弱性 New CWE-284
不適切なアクセス制御
CVE-2024-2481 2025-01-24 14:28 2024-03-15 Show GitHub Exploit DB Packet Storm
38 5.5 警告
Local
IObit Protected Folder IObit の Protected Folder における NULL ポインタデリファレンスに関する脆弱性 New CWE-404
CWE-476
CWE-476
CVE-2025-0223 2025-01-24 14:27 2025-01-5 Show GitHub Exploit DB Packet Storm
39 3.7
Network
PHPGurukul Hostel Management System surya2developer の Hostel Management System におけるリクエストに対するレスポンス内容の違いに起因する情報漏えいに関する脆弱性 New CWE-204
リクエストに対するレスポンス内容の違いに起因する情報漏えい
CVE-2024-2482 2025-01-24 14:23 2024-03-15 Show GitHub Exploit DB Packet Storm
40 5.4 警告
Network
WordPress Download Manager download manager wpdownloadmanager の WordPress 用 download manager におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2023-6954 2025-01-24 14:22 2023-12-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 7.3 HIGH
Network
- - A vulnerability was found in Shiprocket Module 3/4 on OpenCart. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php?route=extension/shi… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0579 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
652 4.5 MEDIUM
Local
- - A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to un… CWE-426
 Untrusted Search Path
CVE-2024-13524 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
653 6.1 MEDIUM
Network
- - The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishin… CWE-79
Cross-site Scripting
CVE-2025-0583 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
654 3.5 LOW
Network
- - A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as problematic. Affected is an unknown function of the file /account/forgotpassword of the component Pas… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0578 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
655 4.3 MEDIUM
Network
- - A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue affects some unknown processing of the file /control/player?center&eventlist&pda&dummy_for_reload=173617763… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0576 2025-01-20 09:15 2025-01-20 Show GitHub Exploit DB Packet Storm
656 3.9 LOW
Local
- - A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as problematic. This vulnerability affects unknown code of the component Rooting Detection. The manipulatio… CWE-693
 Protection Mechanism Failure
CVE-2025-0575 2025-01-20 08:15 2025-01-20 Show GitHub Exploit DB Packet Storm
657 9.1 CRITICAL
Network
- - IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system due to improper validation of … - CVE-2024-41783 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
658 7.5 HIGH
Network
- - IBM TXSeries for Multiplatforms 10.1 could allow a remote attacker to cause a denial of service using persistent connections due to improper allocation of resources. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-41743 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
659 7.5 HIGH
Network
- - IBM TXSeries for Multiplatforms 10.1 is vulnerable to a denial of service, caused by improper enforcement of the timeout on individual read operations. By conducting a slowloris-type attacks, a remot… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-41742 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
660 9.1 CRITICAL
Network
- - IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-38337 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm