You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 22, 2025, 6:04 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
801 | 4.3 |
警告
Network |
DesDev Inc. | DedeCMS | DesDev Inc. の DedeCMS におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2024-3144 | 2025-01-16 15:48 | 2024-04-2 | Show | GitHub Exploit DB Packet Storm |
802 | 6.5 |
警告
Network Themeum |
Tutor LMS
|
Themeum の WordPress 用 Tutor LMS における認証の欠如に関する脆弱性
|
CWE-862
|
認証の欠如
CVE-2024-3553
|
2025-01-16 15:48 |
2024-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
803 | 9 |
緊急
Network |
FreeScout | FreeScout | FreeScout における OS コマンドインジェクションの脆弱性 |
CWE-78 CWE-78 |
CVE-2024-29185 | 2025-01-16 15:48 | 2024-03-22 | Show | GitHub Exploit DB Packet Storm |
804 | 7.8 |
重要
Local |
クアルコム |
Snapdragon 8cx Compute Platform ファームウェア snapdragon 8cx gen 3 ファームウェア QCA6391 ファームウェア fastconnect 6900 ファームウェア Snapdragon 8cx&nb… |
複数のクアルコム製品における境界外書き込みに関する脆弱性 |
CWE-120 CWE-787 |
CVE-2023-43540 | 2025-01-16 15:46 | 2023-09-19 | Show | GitHub Exploit DB Packet Storm |
805 | 5.5 |
警告
Local |
Linux | Linux Kernel | Linux の Linux Kernel における初期化されていないリソースの使用に関する脆弱性 |
CWE-908
初期化されていないリソースの使用 |
CVE-2021-47554 | 2025-01-16 15:46 | 2021-11-24 | Show | GitHub Exploit DB Packet Storm |
806 | 7.8 |
重要
Local |
クアルコム |
APQ8030 ファームウェア APQ8064 ファームウェア 9206 lte modem ファームウェア c-v2x 9150 ファームウェア 9207 lte modem ファームウェア CSRA6640 ファームウェア APQ8037 … |
複数のクアルコム製品における境界外書き込みに関する脆弱性 |
CWE-787 CWE-823 |
CVE-2023-33066 | 2025-01-16 15:43 | 2023-05-17 | Show | GitHub Exploit DB Packet Storm |
807 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Windows 10 Microsoft Windows Server 2022 Microsoft Windows 11 Microsoft Windows Server 2025 |
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
CWE-416
解放済みメモリの使用 |
CVE-2025-21335 | 2025-01-16 15:43 | 2025-01-14 | Show | GitHub Exploit DB Packet Storm |
808 | 7.3 |
重要
Local |
マイクロソフト | Azure Data Studio | Azure Data Studio の特権の昇格の脆弱性 |
CWE-284 CWE-noinfo |
CVE-2024-26203 | 2025-01-16 15:38 | 2024-03-12 | Show | GitHub Exploit DB Packet Storm |
809 | 8.8 |
重要
Network |
マイクロソフト |
Microsoft OLE DB Driver Microsoft SQL Server |
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 |
CWE-209 CWE-noinfo |
CVE-2024-28939 | 2025-01-16 15:34 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
810 | 8.8 |
重要
Network |
マイクロソフト |
Microsoft OLE DB Driver Microsoft SQL Server |
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 |
CWE-122 CWE-noinfo |
CVE-2024-29044 | 2025-01-16 15:31 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 23, 2025, 5:11 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
141 | - | - | - | A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining ale… New | - | CVE-2025-23196 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
142 | - | - | - | An XML External Entity (XXE) vulnerability exists in the Ambari/Oozie project, allowing an attacker to inject malicious XML entities. This vulnerability occurs due to insecure parsing of XML input … New | - | CVE-2025-23195 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
143 | - | - | - | A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processin… New | - | CVE-2024-51941 | 2025-01-23 00:15 | 2025-01-22 | Show | GitHub Exploit DB Packet Storm | |
144 | - | - | - | The List category posts WordPress plugin before 0.90.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which cou… Update | - | CVE-2024-9020 | 2025-01-23 00:15 | 2025-01-18 | Show | GitHub Exploit DB Packet Storm | |
145 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21329 | 2025-01-23 00:02 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
146 | 4.3 |
MEDIUM
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
MapUrlToZone Security Feature Bypass Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21328 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
147 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21327 | 2025-01-22 23:59 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
148 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 |
Internet Explorer Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21326 | 2025-01-22 23:48 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
149 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21323 | 2025-01-22 23:47 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
150 | 6.6 |
MEDIUM
Physics |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Digital Media Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21324 | 2025-01-22 23:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |