You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 22, 2025, 6:04 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
801 | 4.3 |
警告
Network |
DesDev Inc. | DedeCMS | DesDev Inc. の DedeCMS におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2024-3144 | 2025-01-16 15:48 | 2024-04-2 | Show | GitHub Exploit DB Packet Storm |
802 | 6.5 |
警告
Network Themeum |
Tutor LMS
|
Themeum の WordPress 用 Tutor LMS における認証の欠如に関する脆弱性
|
CWE-862
|
認証の欠如
CVE-2024-3553
|
2025-01-16 15:48 |
2024-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
803 | 9 |
緊急
Network |
FreeScout | FreeScout | FreeScout における OS コマンドインジェクションの脆弱性 |
CWE-78 CWE-78 |
CVE-2024-29185 | 2025-01-16 15:48 | 2024-03-22 | Show | GitHub Exploit DB Packet Storm |
804 | 7.8 |
重要
Local |
クアルコム |
Snapdragon 8cx Compute Platform ファームウェア snapdragon 8cx gen 3 ファームウェア QCA6391 ファームウェア fastconnect 6900 ファームウェア Snapdragon 8cx&nb… |
複数のクアルコム製品における境界外書き込みに関する脆弱性 |
CWE-120 CWE-787 |
CVE-2023-43540 | 2025-01-16 15:46 | 2023-09-19 | Show | GitHub Exploit DB Packet Storm |
805 | 5.5 |
警告
Local |
Linux | Linux Kernel | Linux の Linux Kernel における初期化されていないリソースの使用に関する脆弱性 |
CWE-908
初期化されていないリソースの使用 |
CVE-2021-47554 | 2025-01-16 15:46 | 2021-11-24 | Show | GitHub Exploit DB Packet Storm |
806 | 7.8 |
重要
Local |
クアルコム |
APQ8030 ファームウェア APQ8064 ファームウェア 9206 lte modem ファームウェア c-v2x 9150 ファームウェア 9207 lte modem ファームウェア CSRA6640 ファームウェア APQ8037 … |
複数のクアルコム製品における境界外書き込みに関する脆弱性 |
CWE-787 CWE-823 |
CVE-2023-33066 | 2025-01-16 15:43 | 2023-05-17 | Show | GitHub Exploit DB Packet Storm |
807 | 7.8 |
重要
Local |
マイクロソフト |
Microsoft Windows 10 Microsoft Windows Server 2022 Microsoft Windows 11 Microsoft Windows Server 2025 |
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
CWE-416
解放済みメモリの使用 |
CVE-2025-21335 | 2025-01-16 15:43 | 2025-01-14 | Show | GitHub Exploit DB Packet Storm |
808 | 7.3 |
重要
Local |
マイクロソフト | Azure Data Studio | Azure Data Studio の特権の昇格の脆弱性 |
CWE-284 CWE-noinfo |
CVE-2024-26203 | 2025-01-16 15:38 | 2024-03-12 | Show | GitHub Exploit DB Packet Storm |
809 | 8.8 |
重要
Network |
マイクロソフト |
Microsoft OLE DB Driver Microsoft SQL Server |
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 |
CWE-209 CWE-noinfo |
CVE-2024-28939 | 2025-01-16 15:34 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
810 | 8.8 |
重要
Network |
マイクロソフト |
Microsoft OLE DB Driver Microsoft SQL Server |
SQL Server 用 Microsoft OLE DB ドライバーのリモートでコードが実行される脆弱性 |
CWE-122 CWE-noinfo |
CVE-2024-29044 | 2025-01-16 15:31 | 2024-04-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:Jan. 23, 2025, 5:11 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
151 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21321 | 2025-01-22 23:46 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
152 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21320 | 2025-01-22 23:45 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
153 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21319 | 2025-01-22 23:44 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
154 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21318 | 2025-01-22 23:43 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
155 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_23h2 windows_11_24h2 windows_server_2022 |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21317 | 2025-01-22 23:42 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
156 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2012 windows_server_2025 windows_server_2022_23h2 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_… |
Windows Kernel Memory Information Disclosure Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21316 | 2025-01-22 23:41 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
157 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2025 windows_server_2022_23h2 windows_11_24h2 |
Microsoft Brokering File System Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2025-21315 | 2025-01-22 23:40 | 2025-01-15 | Show | GitHub Exploit DB Packet Storm |
158 | - | - | - | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. New | - | CVE-2024-57937 | 2025-01-22 22:15 | 2025-01-21 | Show | GitHub Exploit DB Packet Storm | |
159 | 7.3 |
HIGH
Network
-
|
-
|
The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via gamipress_do_shortcode() fu…
New
|
CWE-94
|
Code Injection
CVE-2024-13499
|
2025-01-22 20:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
160 | 7.5 |
HIGH
Network
-
|
-
|
The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versi…
New
|
CWE-89
|
SQL Injection
CVE-2024-13496
|
2025-01-22 20:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|