Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 6:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
491 8.4 重要
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows 11
Microsoft Windows Server 2025
Windows App
Microsoft Windows Server 2012
M…
リモート デスクトップ クライアントのリモートでコードが実行される脆弱性 New CWE-284
CWE-noinfo
CVE-2024-49105 2025-01-14 15:34 2024-12-10 Show GitHub Exploit DB Packet Storm
492 5.4 警告
Network
マイクロソフト Microsoft Bing Search Microsoft Bing Search のなりすましの脆弱性 New CWE-693
CWE-noinfo
CVE-2024-30041 2025-01-14 15:20 2024-05-14 Show GitHub Exploit DB Packet Storm
493 5.4 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) の情報漏えいの脆弱性 New CWE-359
CWE-noinfo
CVE-2024-30056 2025-01-14 15:20 2024-05-16 Show GitHub Exploit DB Packet Storm
494 4.3 警告
Network
Outlook.com Microsoft Edge Chromium Microsoft Edge (Chromium ベース) のなりすましの脆弱性 New CWE-449
CWE-noinfo
CVE-2024-49041 2025-01-14 15:20 2024-12-5 Show GitHub Exploit DB Packet Storm
495 7 重要
Local
マイクロソフト Microsoft Office
Microsoft 365 Apps
Microsoft Office の特権の昇格の脆弱性 New CWE-362
CWE-59
CVE-2024-49059 2025-01-14 15:20 2024-12-10 Show GitHub Exploit DB Packet Storm
496 6.5 警告
Network
マイクロソフト Microsoft SharePoint Server
Microsoft SharePoint Enterprise Server
Microsoft SharePoint の情報漏えいの脆弱性 New CWE-611
CWE-noinfo
CVE-2024-49064 2025-01-14 15:20 2024-12-10 Show GitHub Exploit DB Packet Storm
497 4.3 警告
Physics
マイクロソフト Microsoft Windows 11
Microsoft Windows Server 2025
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server&…
Windows ワイヤレス ワイド エリア ネットワーク サービス (WwanSvc) の情報漏えいの脆弱性 New CWE-125
CWE-191
CWE-noinfo
CVE-2024-49103 2025-01-14 15:19 2024-12-10 Show GitHub Exploit DB Packet Storm
498 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows 11
Microsoft Windows Server 2025
Microsoft Windows Server 2012
Microsoft Window…
Windows タスク スケジューラの特権の昇格の脆弱性 New CWE-122
CWE-noinfo
CVE-2024-49072 2025-01-14 15:15 2024-12-10 Show GitHub Exploit DB Packet Storm
499 8.2 重要
Network
マイクロソフト Microsoft SharePoint Server
Microsoft SharePoint Enterprise Server
Microsoft SharePoint の特権の昇格の脆弱性 New CWE-284
CWE-noinfo
CVE-2024-49068 2025-01-14 15:13 2024-12-10 Show GitHub Exploit DB Packet Storm
500 7.8 重要
Local
マイクロソフト Microsoft Office Microsoft Office の特権の昇格の脆弱性 New CWE-284
CWE-noinfo
CVE-2024-43600 2025-01-14 15:10 2024-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 17, 2025, 5:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278091 - caldera openlinux_server
openlinux_workstation
startkde in KDE for Caldera OpenLinux 2.3 through 3.1.1 sets the LD_LIBRARY_PATH environment variable to include the current working directory, which could allow local users to gain privileges of oth… NVD-CWE-Other
CVE-2002-0512 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278092 - squirrelmail squirrelmail SquirrelMail 1.2.5 and earlier allows authenticated SquirrelMail users to execute arbitrary commands by modifying the THEME variable in a cookie. NVD-CWE-Other
CVE-2002-0516 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278093 - caldera unixware
openunix
Buffer overflow in X11 library (libX11) on Caldera Open UNIX 8.0.0, UnixWare 7.1.1, and possibly other operating systems, allows local users to gain root privileges via a long -xrm argument to progra… NVD-CWE-Other
CVE-2002-0517 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278094 - freebsd freebsd The SYN cache (syncache) and SYN cookie (syncookie) mechanism in FreeBSD 4.5 and earlier allows remote attackers to cause a denial of service (crash) (1) via a SYN packet that is accepted using synco… NVD-CWE-Other
CVE-2002-0518 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278095 - asp-nuke asp-nuke Cross-site scripting vulnerability in functions-inc.asp for ASP-Nuke RC1 allows remote attackers to execute script as other ASP-Nuke users by embedding it within an IMG tag. NVD-CWE-Other
CVE-2002-0520 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278096 - asp-nuke asp-nuke Cross-site scripting vulnerabilities in ASP-Nuke RC2 and earlier allow remote attackers to execute script or gain privileges as other ASP-Nuke users via script in (1) the name parameter in downloads.… NVD-CWE-Other
CVE-2002-0521 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278097 - asp-nuke asp-nuke ASP-Nuke RC2 and earlier allows remote attackers to bypass authentication and gain privileges by modifying the "pseudo" cookie. NVD-CWE-Other
CVE-2002-0522 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278098 - asp-nuke asp-nuke ASP-Nuke RC2 and earlier allows remote attackers to list all logged-in users by submitting an invalid "pseudo" cookie. NVD-CWE-Other
CVE-2002-0523 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278099 - asp-nuke asp-nuke ASP-Nuke RC2 and earlier allows remote attackers to determine the absolute path of the server by (1) calling database-inc.asp with incorrect cookies, or (2) calling Post.asp with certain arguments, w… NVD-CWE-Other
CVE-2002-0524 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm
278100 - isc inn Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifiers in NTTP responses. NVD-CWE-Other
CVE-2002-0525 2008-09-6 05:28 2002-08-12 Show GitHub Exploit DB Packet Storm