Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
391 7.5 重要
Network
MailCleaner MailCleaner MailCleaner における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2019-1010246 2025-01-20 17:12 2019-01-21 Show GitHub Exploit DB Packet Storm
392 8.8 重要
Network
マイクロソフト Microsoft SQL Server SQL Server Native Client OLE DB プロバイダーのリモート コード実行に対する脆弱性 CWE-121
CWE-noinfo
CVE-2024-28928 2025-01-20 17:11 2024-07-9 Show GitHub Exploit DB Packet Storm
393 8.8 重要
Network
マイクロソフト Microsoft SQL Server SQL Server Native Client OLE DB プロバイダーのリモート コード実行に対する脆弱性 CWE-190
CWE-noinfo
CVE-2024-21428 2025-01-20 17:09 2024-07-9 Show GitHub Exploit DB Packet Storm
394 7.8 重要
Local
マイクロソフト Microsoft 365 Apps
Microsoft Office
Microsoft Excel のセキュリティ機能のバイパスの脆弱性 CWE-502
CWE-noinfo
CVE-2025-21364 2025-01-20 17:09 2025-01-14 Show GitHub Exploit DB Packet Storm
395 4.3 警告
Network
LadiPage LadiPage WordPress 用 LadiPage におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2023-4628 2025-01-20 17:07 2023-08-30 Show GitHub Exploit DB Packet Storm
396 8.8 重要
Network
マイクロソフト Microsoft SQL Server SQL Server Native Client OLE DB プロバイダーのリモート コード実行に対する脆弱性 CWE-122
CWE-noinfo
CVE-2024-21415 2025-01-20 17:06 2024-07-9 Show GitHub Exploit DB Packet Storm
397 7.8 重要
Local
マイクロソフト Microsoft Access
Microsoft 365 Apps
Microsoft Office
Microsoft Access のリモート コードが実行される脆弱性 CWE-416
CWE-noinfo
CVE-2024-49142 2025-01-20 17:01 2024-12-10 Show GitHub Exploit DB Packet Storm
398 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における NULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2024-57881 2025-01-20 16:59 2024-12-18 Show GitHub Exploit DB Packet Storm
399 7.8 重要
Local
Linux Linux Kernel Linux の Linux Kernel における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2024-56615 2025-01-20 16:58 2024-11-25 Show GitHub Exploit DB Packet Storm
400 7.1 重要
Local
Linux Linux Kernel Linux の Linux Kernel における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2024-56627 2025-01-20 16:58 2024-12-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 7.3 HIGH
Network
- - A vulnerability was found in Shiprocket Module 3/4 on OpenCart. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php?route=extension/shi… CWE-89
CWE-74
SQL Injection
Injection
CVE-2025-0579 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
652 4.5 MEDIUM
Local
- - A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to un… CWE-426
 Untrusted Search Path
CVE-2024-13524 2025-01-20 12:15 2025-01-20 Show GitHub Exploit DB Packet Storm
653 6.1 MEDIUM
Network
- - The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishin… CWE-79
Cross-site Scripting
CVE-2025-0583 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
654 3.5 LOW
Network
- - A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107. It has been classified as problematic. Affected is an unknown function of the file /account/forgotpassword of the component Pas… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0578 2025-01-20 11:15 2025-01-20 Show GitHub Exploit DB Packet Storm
655 4.3 MEDIUM
Network
- - A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue affects some unknown processing of the file /control/player?center&eventlist&pda&dummy_for_reload=173617763… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2025-0576 2025-01-20 09:15 2025-01-20 Show GitHub Exploit DB Packet Storm
656 3.9 LOW
Local
- - A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as problematic. This vulnerability affects unknown code of the component Rooting Detection. The manipulatio… CWE-693
 Protection Mechanism Failure
CVE-2025-0575 2025-01-20 08:15 2025-01-20 Show GitHub Exploit DB Packet Storm
657 9.1 CRITICAL
Network
- - IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system due to improper validation of … - CVE-2024-41783 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
658 7.5 HIGH
Network
- - IBM TXSeries for Multiplatforms 10.1 could allow a remote attacker to cause a denial of service using persistent connections due to improper allocation of resources. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-41743 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
659 7.5 HIGH
Network
- - IBM TXSeries for Multiplatforms 10.1 is vulnerable to a denial of service, caused by improper enforcement of the timeout on individual read operations. By conducting a slowloris-type attacks, a remot… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2024-41742 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm
660 9.1 CRITICAL
Network
- - IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-38337 2025-01-20 00:15 2025-01-20 Show GitHub Exploit DB Packet Storm