Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 20, 2025, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
691 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2023-52476 2025-01-15 17:41 2023-10-8 Show GitHub Exploit DB Packet Storm
692 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel におけるリソースのロックに関する脆弱性 CWE-667
不適切なロック
CVE-2021-47349 2025-01-15 17:39 2021-06-11 Show GitHub Exploit DB Packet Storm
693 6.6 警告
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows Server 2022
Windows DNS サーバーのリモートでコードが実行される脆弱性 CWE-416
CWE-noinfo
CVE-2024-26224 2025-01-15 17:39 2024-04-9 Show GitHub Exploit DB Packet Storm
694 7.4 重要
Local
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2012
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microso…
セキュア ブートのセキュリティ機能のバイパスの脆弱性 CWE-347
CWE-noinfo
CVE-2024-26194 2025-01-15 17:37 2024-04-9 Show GitHub Exploit DB Packet Storm
695 5.5 警告
Local
Linux Linux Kernel Linux の Linux Kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-47047 2025-01-15 17:37 2021-04-16 Show GitHub Exploit DB Packet Storm
696 8.8 重要
Network
マイクロソフト Microsoft Windows Server 2016
Microsoft Windows Server 2012
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microso…
Windows ルーティングとリモート アクセス サービス (RRAS) のリモートでコードが実行される脆弱性 CWE-122
CWE-noinfo
CVE-2024-26179 2025-01-15 17:35 2024-04-9 Show GitHub Exploit DB Packet Storm
697 6.1 警告
Network
angeljudesuarez Vehicle Management System Project angeljudesuarez の Vehicle Management System Project におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CWE-94
CVE-2024-12783 2025-01-15 17:34 2024-12-19 Show GitHub Exploit DB Packet Storm
698 9.8 緊急
Network
codezips Project Management System In PHP And MYSQL With Source Code codezips の Project Management System In PHP And MYSQL With Source Code における SQL インジェクションの脆弱性 CWE-74
CWE-89
CWE-89
CVE-2025-0233 2025-01-15 17:34 2025-01-5 Show GitHub Exploit DB Packet Storm
699 5.9 警告
Network
マイクロソフト Azure Private 5G Core Azure Private 5G Core サービス拒否の脆弱性 CWE-130
CWE-noinfo
CVE-2024-20685 2025-01-15 17:30 2024-04-9 Show GitHub Exploit DB Packet Storm
700 9.8 緊急
Network
infoline-tr project management system campcodes の Project Management System における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-284
CWE-434
CWE-434
CVE-2025-0213 2025-01-15 17:28 2025-01-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 21, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
151 - - - In asn1_ber_decoder of asn1_decoder.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. U… New - CVE-2018-9383 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
152 - - - In multiple functions of WifiServiceImpl.java, there is a possible way to activate Wi-Fi hotspot from a non-owner profile due to a missing permission check. This could lead to local escalation of pri… New - CVE-2018-9382 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
153 - - - In multiple functions of MiniThumbFile.java, there is a possible way to view the thumbnails of deleted photos due to a confused deputy. This could lead to local information disclosure with no additio… New - CVE-2018-9379 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
154 - - - In multiple functions of UserDictionaryProvider.java, there is a possible way to add and delete words in the user dictionary due to a confused deputy. This could lead to local escalation of privilege… New - CVE-2018-9375 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
155 - - - In endCallForSubscriber of PhoneInterfaceManager.java, there is a possible way to prevent access to emergency services due to a logic error in the code. This could lead to a local denial of service w… New - CVE-2017-13322 2025-01-18 08:15 2025-01-18 Show GitHub Exploit DB Packet Storm
156 3.3 LOW
Local
termius termius An issue in termius before v.9.9.0 allows a local attacker to execute arbitrary code via a crafted script to the DYLD_INSERT_LIBRARIES component. Update CWE-426
 Untrusted Search Path
CVE-2024-55503 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
157 3.3 LOW
Local
phiewer phiewer In Phiewer 4.1.0, a dylib injection leads to Command Execution which allow attackers to inject dylib file potentially leading to remote control and unauthorized access to sensitive user data. Update CWE-426
 Untrusted Search Path
CVE-2024-53407 2025-01-18 07:51 2025-01-16 Show GitHub Exploit DB Packet Storm
158 6.5 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, and including, 1.4.8 due to insufficient escaping … Update CWE-89
SQL Injection
CVE-2024-12615 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
159 4.3 MEDIUM
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'pms_save_setting' and 'post_new_pass' AJAX actions in all versi… Update CWE-862
 Missing Authorization
CVE-2024-12614 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm
160 7.5 HIGH
Network
hirewebxperts passwords_manager The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to, and including, 1.4.8 due to insufficient escaping… Update CWE-89
SQL Injection
CVE-2024-12613 2025-01-18 07:17 2025-01-16 Show GitHub Exploit DB Packet Storm