You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 23, 2025, 6:01 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
631 | 9.8 |
緊急
Network Apache Software Foundation |
hertzbeat
|
Apache Software Foundation の hertzbeat における信頼できないデータのデシリアライゼーションに関する脆弱性
|
CWE-502 |
CWE-502
CVE-2023-51389
|
2025-01-17 19:41 |
2023-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
632 | 8.5 |
重要
Network |
BoldGrid | W3 Total Cache | BoldGrid の WordPress 用 W3 Total Cache における認証の欠如に関する脆弱性 |
CWE-862
認証の欠如 |
CVE-2024-12365 | 2025-01-17 19:41 | 2024-12-9 | Show | GitHub Exploit DB Packet Storm |
633 | 9.8 |
緊急
Network Ivanti |
Avalanche
|
Ivanti の Avalanche におけるパストラバーサルの脆弱性
|
CWE-22 |
CWE-22 CWE-288
CVE-2024-13181
|
2025-01-17 19:41 |
2025-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
634 | 6.4 |
警告
Network |
s-sols | seraphinite accelerator | s-sols の WordPress 用 seraphinite accelerator におけるサーバサイドのリクエストフォージェリの脆弱性 |
CWE-918
サーバサイドリクエストフォージェリ |
CVE-2024-1568 | 2025-01-17 19:41 | 2024-02-28 | Show | GitHub Exploit DB Packet Storm |
635 | 7.2 |
重要
Network |
zestard | admin side data storage for contact form 7 | zestard の WordPress 用 admin side data storage for contact form 7 における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2024-1776 | 2025-01-17 19:41 | 2024-02-23 | Show | GitHub Exploit DB Packet Storm |
636 | 8.8 |
重要
Network |
Progress Software Corporation | telerik reporting | Progress Software Corporation の telerik reporting における信頼できないデータのデシリアライゼーションに関する脆弱性 |
CWE-502 CWE-502 |
CVE-2024-1856 | 2025-01-17 19:40 | 2024-03-20 | Show | GitHub Exploit DB Packet Storm |
637 | 9.1 |
緊急
Network WPvivid |
Migration |
Backup Staging
WPvivid の WordPress 用 Migration, Backup, Staging における SQL インジェクションの脆弱性
|
CWE-89
|
SQLインジェクション
CVE-2024-1981
|
2025-01-17 19:40 |
2024-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
638 | 4.8 |
警告
Network |
shopfiles | ebook store | shopfiles の WordPress 用 ebook store におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2024-23501 | 2025-01-17 19:40 | 2024-02-29 | Show | GitHub Exploit DB Packet Storm |
639 | 6.5 |
警告
Network |
axiosys | bento4 | axiosys の bento4 における有効期限後のメモリの解放の欠如に関する脆弱性 |
CWE-401 CWE-401 |
CVE-2024-24155 | 2025-01-17 19:40 | 2024-02-29 | Show | GitHub Exploit DB Packet Storm |
640 | 5.4 |
警告
Network |
Vanderbilt | redcap | Vanderbilt の redcap におけるクロスサイトスクリプティングの脆弱性 |
CWE-79 CWE-79 |
CVE-2024-56377 | 2025-01-17 19:40 | 2024-12-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 24, 2025, 4:45 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
441 | 5.6 |
MEDIUM
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_11_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_… |
Windows Cryptographic Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21336 | 2025-01-22 05:06 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
442 | 7.5 |
HIGH
Network
microsoft
|
windows_server_2022_23h2 |
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2 windows_server_2019 windows_server_2022 windows_ser…
Windows Remote Desktop Services Denial of Service Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2025-21330
|
2025-01-22 05:04 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
443 | 7.3 |
HIGH
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows Installer Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21331 | 2025-01-22 04:58 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
444 | 8.8 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
MapUrlToZone Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21332 | 2025-01-22 04:57 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
445 | 7.8 |
HIGH
Local |
microsoft |
365_apps office |
Microsoft Office Visio Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21345 | 2025-01-22 04:52 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
446 | 7.8 |
HIGH
Local |
microsoft | sharepoint_server | Microsoft SharePoint Server Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21344 | 2025-01-22 04:51 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
447 | 7.5 |
HIGH
Network
microsoft
|
windows_11_22h2 |
windows_11_23h2 windows_11_24h2
Windows Web Threat Defense User Service Information Disclosure Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2025-21343
|
2025-01-22 04:50 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
448 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows Digital Media Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21341 | 2025-01-22 04:49 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
449 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2022_23h2 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2 windows_server_2019 windows_server_2022 windows_ser… |
Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21340 | 2025-01-22 04:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
450 | 6.7 |
MEDIUM
Local |
microsoft |
365_apps office outlook |
Microsoft Outlook Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21357 | 2025-01-22 04:40 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |