Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
721 7.8 重要
Local
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2024-25999 2025-01-24 11:54 2024-03-12 Show GitHub Exploit DB Packet Storm
722 7.5 重要
Network
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品における初期化されていないポインタのアクセスに関する脆弱性 CWE-824
初期化されていないポインタのアクセス
CVE-2024-26004 2025-01-24 11:54 2024-03-12 Show GitHub Exploit DB Packet Storm
723 8.5 重要
Network
Pterodactyl Wings Pterodactyl の Wings におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CWE-362
CWE-362
CWE-363
CVE-2024-27102 2025-01-24 11:54 2024-03-13 Show GitHub Exploit DB Packet Storm
724 7 重要
Network
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品における重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2024-28134 2025-01-24 11:54 2024-05-14 Show GitHub Exploit DB Packet Storm
725 7.8 重要
Local
PHOENIX CONTACT charx sec-3150 ファームウェア
charx sec-3100 ファームウェア
charx sec-3000 ファームウェア
charx sec-3050 ファームウェア
複数の PHOENIX CONTACT 製品における Time-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2024-28137 2025-01-24 11:54 2024-05-14 Show GitHub Exploit DB Packet Storm
726 5.4 警告
Network
themelooks enter addons themelooks の WordPress 用 enter addons におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-79
CVE-2024-47625 2025-01-24 11:54 2024-10-5 Show GitHub Exploit DB Packet Storm
727 7.2 重要
Network
GLPI-PROJECT.ORG GLPI GLPI-PROJECT.ORG の GLPI における認証に関する脆弱性 CWE-287
不適切な認証
CVE-2024-47761 2025-01-24 11:54 2024-12-11 Show GitHub Exploit DB Packet Storm
728 9.8 緊急
Network
Aviatrix Controller Aviatrix の Controller における OS コマンドインジェクションの脆弱性 CWE-78
CWE-78
CVE-2024-50603 2025-01-24 11:54 2024-10-27 Show GitHub Exploit DB Packet Storm
729 9.8 緊急
Network
ZyXEL NAS 326 ファームウェア
NAS 542 ファームウェア
ZyXEL の NAS 326 ファームウェアおよび NAS 542 ファームウェアにおける OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-6342 2025-01-24 11:54 2024-09-10 Show GitHub Exploit DB Packet Storm
730 7.8 重要
Local
インテル graphics performance analyzers インテルの graphics performance analyzers における制御されていない検索パスの要素に関する脆弱性 CWE-427
CWE-427
CVE-2023-41961 2025-01-24 11:54 2023-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 9, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274481 - aktueldownload aktueldownload_haber_script SQL injection vulnerability in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via certain vectors related to the HaberDetay.asp and rss.asp components, and the … NVD-CWE-Other
CVE-2007-1016 2011-03-8 11:51 2007-02-21 Show GitHub Exploit DB Packet Storm
274482 - ibm db2 Certain setuid DB2 binaries in IBM DB2 before 9 Fix Pack 2 for Linux and Unix allow local users to overwrite arbitrary files via a symlink attack on the DB2DIAG.LOG temporary file. CWE-59
Link Following
CVE-2007-1027 2011-03-8 11:51 2007-02-21 Show GitHub Exploit DB Packet Storm
274483 - distributed_checksum_clearinghouse dcc Unspecified vulnerability in Distributed Checksum Clearinghouse (DCC) before 1.3.51 allows remote attackers to delete or add hosts in /var/dcc/maps. NVD-CWE-Other
CVE-2007-1047 2011-03-8 11:51 2007-02-22 Show GitHub Exploit DB Packet Storm
274484 - wordpress wordpress Cross-site scripting (XSS) vulnerability in the wp_explain_nonce function in the nonce AYS functionality (wp-includes/functions.php) for WordPress 2.0 before 2.0.9 and 2.1 before 2.1.1 allows remote … NVD-CWE-Other
CVE-2007-1049 2011-03-8 11:51 2007-02-22 Show GitHub Exploit DB Packet Storm
274485 - apple mac_os_x
mac_os_x_server
Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a… NVD-CWE-Other
CVE-2007-1071 2011-03-8 11:51 2007-02-23 Show GitHub Exploit DB Packet Storm
274486 - novell zenworks Unspecified vulnerability in Novell ZENworks 7 Desktop Management Support Pack 1 before Hot patch 3 (ZDM7SP1HP3) allows remote attackers to upload images to certain folders that were not configured i… NVD-CWE-Other
CVE-2007-1119 2011-03-8 11:51 2007-02-27 Show GitHub Exploit DB Packet Storm
274487 - zephyrsoft_toolbox address_book_continued Multiple SQL injection vulnerabilities in Mathis Dirksen-Thedens ZephyrSoft Toolbox Address Book Continued (ABC) 1.00 and 1.01 allow remote attackers to execute arbitrary SQL commands via the id para… NVD-CWE-Other
CVE-2007-1122 2011-03-8 11:51 2007-02-27 Show GitHub Exploit DB Packet Storm
274488 - watchtower watchtower Unspecified vulnerability in Watchtower (WT) before 0.12 has unknown impact and attack vectors, related to "unauthorized accounts." NVD-CWE-noinfo
CVE-2007-1134 2011-03-8 11:51 2007-03-3 Show GitHub Exploit DB Packet Storm
274489 - watchtower watchtower Watchtower is prone to an unspecified authentication-bypass vulnerability. An attacker can exploit this issue to gain unauthorized access to the application. Versions prior to 0.12 are vulnerab… NVD-CWE-noinfo
CVE-2007-1134 2011-03-8 11:51 2007-03-3 Show GitHub Exploit DB Packet Storm
274490 - watchtower watchtower The vendor has released version 0.12 to address this issue. Download: http://downloads.sourceforge.net/wtelements/wt0.12.tar.gz?modtime=1171 460836&big_mirror=0 NVD-CWE-noinfo
CVE-2007-1134 2011-03-8 11:51 2007-03-3 Show GitHub Exploit DB Packet Storm