Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
51 7.5 重要
Network
SimpleHelp Ltd SimpleHelp SimpleHelp Ltd の SimpleHelp におけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2024-57727 2025-01-17 19:40 2025-01-15 Show GitHub Exploit DB Packet Storm
52 5.4 警告
Network
Themeisle Orbit Fox ThemeIsle の WordPress 用 Orbit Fox におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-0311 2025-01-17 19:40 2025-01-10 Show GitHub Exploit DB Packet Storm
53 6.2 警告
Local
FreeType Project FreeType FreeType Project の FreeType における整数オーバーフローの脆弱性 New CWE-190
CWE-190
CVE-2025-23022 2025-01-17 19:40 2025-01-10 Show GitHub Exploit DB Packet Storm
54 6.1 警告
Network
weForms Pro weForms weForms Pro の WordPress 用 weForms におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-0386 2025-01-17 18:26 2024-03-12 Show GitHub Exploit DB Packet Storm
55 8.8 重要
Network
Themeum Tutor LMS Themeum の WordPress 用 Tutor LMS における SQL インジェクションの脆弱性 New CWE-89
SQLインジェクション
CVE-2024-1751 2025-01-17 18:26 2024-03-13 Show GitHub Exploit DB Packet Storm
56 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. f1203 ファームウェア Shenzhen Tenda Technology Co.,Ltd. の f1203 ファームウェアにおける境界外書き込みに関する脆弱性 New CWE-121
CWE-787
CVE-2024-2979 2025-01-17 18:26 2024-03-27 Show GitHub Exploit DB Packet Storm
57 4.3 警告
Network
DesDev Inc. DedeCMS DesDev Inc. の DedeCMS におけるクロスサイトリクエストフォージェリの脆弱性 New CWE-352
同一生成元ポリシー違反
CVE-2024-3146 2025-01-17 18:26 2024-04-2 Show GitHub Exploit DB Packet Storm
58 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. W15E ファームウェア Shenzhen Tenda Technology Co.,Ltd. の W15E ファームウェアにおける境界外書き込みに関する脆弱性 New CWE-121
CWE-787
CVE-2024-4117 2025-01-17 18:26 2024-04-24 Show GitHub Exploit DB Packet Storm
59 5.4 警告
Network
WPDeveloper Essential Addons for Elementor WPDeveloper の WordPress 用 Essential Addons for Elementor におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4275 2025-01-17 18:26 2024-05-14 Show GitHub Exploit DB Packet Storm
60 9.8 緊急
Network
Apache Software Foundation Apache OpenMeetings Apache Software Foundation の Apache OpenMeetings における信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2024-54676 2025-01-17 18:26 2024-12-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275051 - jean-jacques_sarton mtink Buffer overflow in the mtink status monitor, as included in the printer-drivers package in Mandrake Linux, allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2003-0034 2008-09-11 09:05 2003-02-7 Show GitHub Exploit DB Packet Storm
275052 - apple mac_os_x
mac_os_x_server
Apple File Protocol (AFP) in Mac OS X before 10.2.4 allows administrators to log in as other users by using the administrator password. NVD-CWE-Other
CVE-2003-0049 2008-09-11 09:05 2003-03-3 Show GitHub Exploit DB Packet Storm
275053 - apple mac_os_x TruBlueEnvironment for MacOS 10.2.3 and earlier allows local users to overwrite or create arbitrary files and gain root privileges by setting a certain environment variable that is used to write debu… NVD-CWE-Other
CVE-2003-0088 2008-09-11 09:05 2003-03-3 Show GitHub Exploit DB Packet Storm
275054 - oracle oracle8i
oracle9i
TNS Listener in Oracle Net Services for Oracle 9i 9.2.x and 9.0.x, and Oracle 8i 8.1.x, allows remote attackers to cause a denial of service (hang or crash) via a SERVICE_CURLOAD command. NVD-CWE-Other
CVE-2002-1118 2008-09-11 09:03 2002-10-28 Show GitHub Exploit DB Packet Storm
275055 - matt_blaze cfs Buffer overflows in CFS daemon (cfsd) before 1.3.3-8.1, and 1.4x before 1.4.1-5, allow remote attackers to cause a denial of service and possibly execute arbitrary code. NVD-CWE-Other
CVE-2002-0351 2008-09-11 09:01 2002-06-25 Show GitHub Exploit DB Packet Storm
275056 - sgi irix netstat in SGI IRIX before 6.5.12 allows local users to determine the existence of files on the system, even if the users do not have the appropriate permissions. NVD-CWE-Other
CVE-2002-0355 2008-09-11 09:01 2002-05-29 Show GitHub Exploit DB Packet Storm
275057 - sgi irix Vulnerability in XFS filesystem reorganizer (fsr_xfs) in SGI IRIX 6.5.10 and earlier allows local users to gain root privileges by overwriting critical system files. NVD-CWE-Other
CVE-2002-0356 2008-09-11 09:01 2002-05-29 Show GitHub Exploit DB Packet Storm
275058 - sgi irix Unknown vulnerability in rpc.passwd in the nfs.sw.nis subsystem of SGI IRIX 6.5.15 and earlier allows local users to gain root privileges. NVD-CWE-Other
CVE-2002-0357 2008-09-11 09:01 2002-06-18 Show GitHub Exploit DB Packet Storm
275059 - martin_roesch snort Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of service (crash and core dump) via a malformed ICMP packet. NVD-CWE-Other
CVE-2002-0115 2008-09-11 09:00 2002-03-25 Show GitHub Exploit DB Packet Storm
275060 - palm palm_desktop Apple Palm Desktop 4.0b76 and 4.0b77 creates world-readable backup files and folders when a hotsync is performed, which could allow a local user to obtain sensitive information. NVD-CWE-Other
CVE-2002-0120 2008-09-11 09:00 2002-03-25 Show GitHub Exploit DB Packet Storm