Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 14, 2025, 6:04 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
391 7.3 重要
Local
Eclipse Foundation Eclipse OpenJ9 Eclipse Foundation の Eclipse OpenJ9 における境界外読み取りに関する脆弱性 CWE-125
CWE-125
CWE-787
CWE-787
CWE-805
CVE-2024-3933 2025-01-10 11:19 2024-05-27 Show GitHub Exploit DB Packet Storm
392 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows Remote Access Connection Manager の情報漏えいの脆弱性 CWE-125
CWE-126
CVE-2024-28902 2025-01-10 11:13 2024-04-9 Show GitHub Exploit DB Packet Storm
393 6.3 警告
Adjacent
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-28898 2025-01-10 11:11 2024-04-9 Show GitHub Exploit DB Packet Storm
394 6.8 警告
Physics
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows rndismp6.sys のリモートでコードが実行される脆弱性 CWE-20
CWE-noinfo
CVE-2024-26253 2025-01-10 11:07 2024-04-9 Show GitHub Exploit DB Packet Storm
395 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 CWE-416
CWE-noinfo
CVE-2024-26233 2025-01-10 11:04 2024-04-9 Show GitHub Exploit DB Packet Storm
396 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 CWE-416
CWE-noinfo
CVE-2024-26222 2025-01-10 11:02 2024-04-9 Show GitHub Exploit DB Packet Storm
397 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microso…
DHCP Server サービスのサービス拒否の脆弱性 CWE-400
CWE-noinfo
CVE-2024-26215 2025-01-10 10:59 2024-04-9 Show GitHub Exploit DB Packet Storm
398 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Window…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-26200 2025-01-10 10:54 2024-04-9 Show GitHub Exploit DB Packet Storm
399 7.2 重要
Network
マイクロソフト Microsoft Windows Server 2022
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microso…
DHCP Server Service のリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-26195 2025-01-10 10:51 2024-04-9 Show GitHub Exploit DB Packet Storm
400 7.1 重要
Adjacent
マイクロソフト Microsoft Windows Server 2012 セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-121
CWE-noinfo
CVE-2024-20688 2025-01-10 10:48 2024-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 15, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275751 - francisco_burzi php-nuke Multiple unspecified vulnerabilities in the WYSIWYG editor in PHP-Nuke before 7.9 Final have unknown impact and attack vectors. NVD-CWE-Other
CVE-2005-3016 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275752 - content2web content2web PHP file inclusion vulnerability in index.php in Content2Web 1.0.1 allows remote attackers to include arbitrary files via the show parameter, which can lead to resultant errors such as path disclosur… NVD-CWE-Other
CVE-2005-3017 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275753 - cambridge_computer_corporation vxftpsrv Buffer overflow in vxFtpSrv 0.9.7 allows remote attackers to execute arbitrary code via a long USER name. NVD-CWE-Other
CVE-2005-3031 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275754 - cambridge_computer_corporation vxtftpsrv Buffer overflow in vxTftpSrv 1.7.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TFTP request with a long filename argument. NVD-CWE-Other
CVE-2005-3032 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275755 - cambridge_computer_corporation vxweb Stack-based buffer overflow in vxWeb 1.1.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2005-3033 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275756 - compuware driverstudio Compuware DriverStudio Remote Control service (DSRsvc.exe) 2.7 and 3.0 beta 2 allows remote attackers to bypass authentication via a null session. NVD-CWE-Other
CVE-2005-3034 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275757 - compuware driverstudio Compuware DriverStudio Remote Control service (DSRsvc.exe) 2.7 and 3.0 beta 2 allows remote attackers to cause a denial of service (reboot) via a UDP packet sent directly to port 9110. NVD-CWE-Other
CVE-2005-3035 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275758 - ttxn file_transfer_anywhere File Transfer Anywhere 3.01 stores sensitive password information in plaintext in the PASS value in the "File Transfer Anywhere" registry key, which allows local users to gain privileges. NVD-CWE-Other
CVE-2005-3036 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275759 - handy_address_book handy_address_book_server Cross-site scripting (XSS) vulnerability in Handy Address Book Server 1.1 allows remote attackers to inject arbitrary web script or HTML via the SEARCHTEXT parameter in a demos URL. NVD-CWE-Other
CVE-2005-3037 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm
275760 - hosting_controller hosting_controller Unspecified vulnerability in Hosting Controller 6.1 before Hotfix 2.4 allows remote attackers to list and read contents of arbitrary drives, related to "the PHP vulnerability." NVD-CWE-Other
CVE-2005-3038 2008-09-6 05:53 2005-09-22 Show GitHub Exploit DB Packet Storm