Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 6:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
461 8.8 重要
Network
Wazuh Inc. Wazuh Wazuh Inc. の Wazuh におけるコードインジェクションの脆弱性 New CWE-94
CWE-94
CVE-2023-50260 2025-01-14 16:05 2023-12-5 Show GitHub Exploit DB Packet Storm
462 7.8 重要
Local
クアルコム SD 450 ファームウェア
SD 615 ファームウェア
SD 616 ファームウェア
SD 810 ファームウェア
SD 212 ファームウェア
MDM9607 ファームウェア
MDM9650 ファームウェア
SD 210…
複数のクアルコム製品における認証に関する脆弱性 New CWE-287
不適切な認証
CVE-2018-11952 2025-01-14 16:04 2018-06-7 Show GitHub Exploit DB Packet Storm
463 7.8 重要
Local
クアルコム SD 850 ファームウェア
SD 835 ファームウェア
MDM9206 ファームウェア
MDM9607 ファームウェア
SD 845 ファームウェア
複数のクアルコム製品における境界外書き込みに関する脆弱性 New CWE-20
CWE-787
CVE-2017-15832 2025-01-14 16:04 2017-10-24 Show GitHub Exploit DB Packet Storm
464 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 New CWE-noinfo
情報不足
CVE-2021-47037 2025-01-14 15:59 2021-03-30 Show GitHub Exploit DB Packet Storm
465 5.3 警告
Network
helderk Maintenance Mode helderk の WordPress 用 Maintenance Mode における脆弱性 New CWE-noinfo
情報不足
CVE-2024-1478 2025-01-14 15:55 2024-03-5 Show GitHub Exploit DB Packet Storm
466 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 New CWE-noinfo
情報不足
CVE-2021-47029 2025-01-14 15:52 2021-04-12 Show GitHub Exploit DB Packet Storm
467 5.3 警告
Network
Huawei NIP6300 ファームウェア
Secospace USG6600 ファームウェア
USG6000V ファームウェア
Secospace USG6300 ファームウェア
NGFW Module ファームウェア
Secospace USG6500 ファームウェア
複数の Huawei 製品における境界外読み取りに関する脆弱性 New CWE-125
CWE-125
CVE-2020-1820 2025-01-14 15:47 2024-12-28 Show GitHub Exploit DB Packet Storm
468 3.3
Local
Huawei P30 Pro ファームウェア Huawei の P30 Pro ファームウェアにおける脆弱性 New CWE-200
CWE-noinfo
CVE-2020-9089 2025-01-14 15:47 2020-02-18 Show GitHub Exploit DB Packet Storm
469 9.1 緊急
Network
Huawei HarmonyOS
EMUI
Huawei の EMUI および HarmonyOS におけるパストラバーサルの脆弱性 New CWE-22
CWE-22
CVE-2023-52953 2025-01-14 15:47 2025-01-8 Show GitHub Exploit DB Packet Storm
470 7.5 重要
Network
Huawei HarmonyOS
EMUI
Huawei の EMUI および HarmonyOS における不適切なデフォルトパーミッションに関する脆弱性 New CWE-276
CWE-701
CVE-2023-52954 2025-01-14 15:47 2025-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 16, 2025, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276511 - edgewall_software trac Directory traversal vulnerability in Edgewall Trac 0.8.3 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in the id parameter to the (1) upload or (2) attachmen… NVD-CWE-Other
CVE-2005-2007 2008-09-6 05:50 2005-06-19 Show GitHub Exploit DB Packet Storm
276512 - symantec norton_antivirus Symantec AntiVirus 9 Corporate Edition allows local users to gain privileges via the "Scan for viruses" option, which launches a help window with raised privileges, a re-introduction of a vulnerabili… NVD-CWE-Other
CVE-2005-2017 2008-09-6 05:50 2005-08-30 Show GitHub Exploit DB Packet Storm
276513 - freebsd freebsd ipfw in FreeBSD 5.4, when running on Symmetric Multi-Processor (SMP) or Uni Processor (UP) systems with the PREEMPTION kernel option enabled, does not sufficiently lock certain resources while perfor… NVD-CWE-Other
CVE-2005-2019 2008-09-6 05:50 2005-07-5 Show GitHub Exploit DB Packet Storm
276514 - cpanel cpanel Cross-site scripting (XSS) vulnerability in cPanel 9.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the user parameter in the login page. NVD-CWE-Other
CVE-2005-2021 2008-09-6 05:50 2005-06-20 Show GitHub Exploit DB Packet Storm
276515 - vipul razor-agents Vipul Razor Agents (razor-agents) before 2.70 allows remote attackers to cause a denial of service via (1) certain "unusual HTML messages" or (2) "certain malformed headers" such as Content-Type. NVD-CWE-Other
CVE-2005-2024 2008-09-6 05:50 2005-06-17 Show GitHub Exploit DB Packet Storm
276516 - enterasys vertical_horizon-2402s Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 has a hard-coded account and password for debugging, which allows remote attackers to gain privileges. NVD-CWE-Other
CVE-2005-2026 2008-09-6 05:50 2005-06-16 Show GitHub Exploit DB Packet Storm
276517 - enterasys vertical_horizon-2402s Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 does not properly restrict certain debugging commands to the ADMIN account, which could allow attackers to obtain sensitive information … NVD-CWE-Other
CVE-2005-2027 2008-09-6 05:50 2005-06-16 Show GitHub Exploit DB Packet Storm
276518 - amarok web_frontend amaroK Web Frontend 1.3 stores the globals.inc file under the web root without a .php extension and insufficient access control, which allows remote attackers to obtain the database username and pass… NVD-CWE-Other
CVE-2005-2029 2008-09-6 05:50 2005-06-17 Show GitHub Exploit DB Packet Storm
276519 - socialmpn socialmpn Multiple SQL injection vulnerabilities in socialMPN allow remote attackers to execute arbitrary SQL commands via (1) the sid parameter to article.php, (2) uname parameter to user.php, (3) siteid para… NVD-CWE-Other
CVE-2005-2031 2008-09-6 05:50 2005-06-16 Show GitHub Exploit DB Packet Storm
276520 - fortibus fortibus_cms Fortibus CMS 4.0.0 allows remote attackers to modify information of other users, including Admin, via the "My info" page. NVD-CWE-Other
CVE-2005-2038 2008-09-6 05:50 2005-06-20 Show GitHub Exploit DB Packet Storm