Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
391 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. i21 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の i21 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4248 2025-01-28 14:37 2024-04-27 Show GitHub Exploit DB Packet Storm
392 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. i21 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の i21 ファームウェアにおける境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-4497 2025-01-28 14:37 2024-05-5 Show GitHub Exploit DB Packet Storm
393 4.2 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Window…
Windows BitLocker の情報漏えいの脆弱性 CWE-636
CWE-noinfo
CVE-2025-21210 2025-01-28 14:36 2025-01-14 Show GitHub Exploit DB Packet Storm
394 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows 11
Microsoft Windows Server 2022
Microsoft Window…
Windows テレフォニー サービスのリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2025-21273 2025-01-28 14:34 2025-01-14 Show GitHub Exploit DB Packet Storm
395 5.4 警告
Network
Jegtheme Jeg Elementor Kit Jegtheme の WordPress 用 Jeg Elementor Kit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-29101 2025-01-28 14:33 2024-03-19 Show GitHub Exploit DB Packet Storm
396 5.3 警告
Network
kodezen academy lms kodezen の WordPress 用 academy lms における脆弱性 CWE-200
CWE-noinfo
CVE-2024-35171 2025-01-28 14:33 2024-05-14 Show GitHub Exploit DB Packet Storm
397 5.4 警告
Network
JetBrains TeamCity JetBrains の TeamCity におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-36373 2025-01-28 14:33 2024-05-29 Show GitHub Exploit DB Packet Storm
398 8.1 重要
Network
JetBrains TeamCity JetBrains の TeamCity における不正な認証に関する脆弱性 CWE-863
CWE-863
CVE-2024-36376 2025-01-28 14:33 2024-05-29 Show GitHub Exploit DB Packet Storm
399 5.4 警告
Network
WPDeveloper essential blocks WPDeveloper の WordPress 用 essential blocks におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2255 2025-01-28 14:30 2024-03-20 Show GitHub Exploit DB Packet Storm
400 7.5 重要
Network
Linux Foundation Magma Linux Foundation の Magma における古典的バッファオーバーフローの脆弱性 CWE-120
CWE-120
CVE-2024-24416 2025-01-28 14:30 2024-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1411 - - - Under specific conditions, the Central Management Console of the SAP BusinessObjects Business Intelligence platform allows an attacker with admin rights to generate or retrieve a secret passphrase, e… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2025-0064 2025-02-12 00:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1412 - - - A vulnerability classified as critical has been found in code-projects Job Recruitment 1.0. This affects an unknown part of the file /\_parse/load\_user-profile.php. The manipulation of the argument … CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-1162 2025-02-12 00:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1413 - - - A vulnerability was found in SourceCodester Employee Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipulation… CWE-1392
 Use of Default Credentials
CVE-2025-1160 2025-02-12 00:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1414 - - - The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, Safari 17.4, tvOS 17.4, watchOS 10.4, visionOS 1.1, macOS Sonoma 14.4. Processing web content m… - CVE-2024-54658 2025-02-12 00:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1415 - - - The issue was addressed with improved memory handling. This issue is fixed in iOS 17.4 and iPadOS 17.4, tvOS 17.4, watchOS 10.4, visionOS 1.1, macOS Sonoma 14.4. Processing web content may lead to ar… - CVE-2024-27859 2025-02-12 00:15 2025-02-11 Show GitHub Exploit DB Packet Storm
1416 - - - Buffer Overflow vulnerability in Proftpd commit 4017eff8 allows a remote attacker to execute arbitrary code and can cause a Denial of Service (DoS) on the FTP service by sending a maliciously crafted… - CVE-2024-57392 2025-02-12 00:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1417 - - - An issue in deep-diver LLM-As-Chatbot before commit 99c2c03 allows a remote attacker to execute arbitrary code via the modelsbyom.py component. - CVE-2024-55241 2025-02-12 00:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1418 - - - An issue in the relPath parameter of WebFileSys version 2.31.0 allows attackers to perform directory traversal via a crafted HTTP request. By injecting traversal payloads into the parameter, attacker… - CVE-2024-53586 2025-02-12 00:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1419 - - - Cross Site Scripting vulnerability in Gilnei Moraes phpABook v.0.9 allows a remote attacker to execute arbitrary code via the rol parameter in index.php - CVE-2024-48589 2025-02-12 00:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1420 - - - Stored Cross Site Scripting(XSS) vulnerability in Egavilan Media Resumes Management and Job Application Website 1.0 allows remote attackers to inject arbitrary code via First and Last Name in Apply F… - CVE-2020-36085 2025-02-12 00:15 2025-02-7 Show GitHub Exploit DB Packet Storm