Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
811 6.7 警告
Local
フォーティネット FortiAnalyzer-BigData
FortiAnalyzer
FortiManager
複数のフォーティネット製品における境界外書き込みに関する脆弱性 CWE-121
CWE-787
CVE-2024-31496 2025-01-23 18:08 2024-11-12 Show GitHub Exploit DB Packet Storm
812 7.8 重要
Local
フォーティネット FortiClient フォーティネットの Windows 用 FortiClient における重要な機能に対する認証の欠如に関する脆弱性 CWE-288
CWE-306
CVE-2024-47574 2025-01-23 18:08 2024-11-12 Show GitHub Exploit DB Packet Storm
813 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server 2019
Microsoft Window…
Windows カーネル メモリの情報漏えいの脆弱性 CWE-532
CWE-noinfo
CVE-2025-21320 2025-01-23 18:04 2025-01-14 Show GitHub Exploit DB Packet Storm
814 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2016
Microsoft Windows 10
Microsoft Windows Server 2019
Microsoft Window…
Windows デジタル メディアの特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2025-21327 2025-01-23 18:04 2025-01-14 Show GitHub Exploit DB Packet Storm
815 9.8 緊急
Network
Gacjie Server project Gacjie Server Gacjie Server project の Gacjie Server における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2024-2406 2025-01-23 16:31 2024-03-12 Show GitHub Exploit DB Packet Storm
816 4.3 警告
Network
Autopolis Bulgarisation for WooCommerce Autopolis の WordPress 用 Bulgarisation for WooCommerce におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-2395 2025-01-23 16:26 2024-03-12 Show GitHub Exploit DB Packet Storm
817 7.5 重要
Network
JeeWMS JeeWMS JeeWMS におけるパストラバーサルの脆弱性 CWE-22
CWE-22
CVE-2024-27765 2025-01-23 15:47 2024-03-5 Show GitHub Exploit DB Packet Storm
818 4.3 警告
Network
07fly 07FlyCms 07fly の 07FlyCms におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-57160 2025-01-23 15:01 2025-01-16 Show GitHub Exploit DB Packet Storm
819 6.6 警告
Physics
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2022
Microsoft Window…
Windows デジタル メディアの特権昇格の脆弱性 CWE-125
CWE-noinfo
CVE-2025-21324 2025-01-23 15:00 2025-01-14 Show GitHub Exploit DB Packet Storm
820 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2022
Microsoft Window…
Windows カーネル メモリの情報漏えいの脆弱性 CWE-532
CWE-noinfo
CVE-2025-21318 2025-01-23 14:47 2025-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 12, 2025, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274451 - apple ipod_touch Link to patched version (v2.1) - http://www.apple.com/ipodtouch/softwareupdate.html CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3631 2011-03-8 12:11 2008-09-11 Show GitHub Exploit DB Packet Storm
274452 - condor_project condor Unspecified vulnerability in Condor before 7.0.5 allows attackers to execute jobs as other users via unknown vectors. NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3826 2011-03-8 12:11 2008-10-9 Show GitHub Exploit DB Packet Storm
274453 - condor_project condor Stack-based buffer overflow in the condor_ schedd daemon in Condor before 7.0.5 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-3828 2011-03-8 12:11 2008-10-9 Show GitHub Exploit DB Packet Storm
274454 - condor_project condor Unspecified vulnerability in the condor_ schedd daemon in Condor before 7.0.5 allows attackers to cause a denial of service (crash) via unknown vectors. NVD-CWE-noinfo
CVE-2008-3829 2011-03-8 12:11 2008-10-9 Show GitHub Exploit DB Packet Storm
274455 - condor_project condor Condor before 7.0.5 does not properly handle when the configuration specifies overlapping netmasks in allow or deny rules, which causes the rule to be ignored and allows attackers to bypass intended … CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3830 2011-03-8 12:11 2008-10-9 Show GitHub Exploit DB Packet Storm
274456 - django_project django The administration application in Django 0.91, 0.95, and 0.96 stores unauthenticated HTTP POST requests and processes them after successful authentication occurs, which allows remote attackers to con… CWE-352
 Origin Validation Error
CVE-2008-3909 2011-03-8 12:11 2008-09-5 Show GitHub Exploit DB Packet Storm
274457 - adobe robohelp_server Cross-site scripting (XSS) vulnerability in Adobe RoboHelp Server 6 and 7 allows remote attackers to inject arbitrary web script or HTML via vectors related to the Help Errors log. CWE-79
Cross-site Scripting
CVE-2008-2991 2011-03-8 12:10 2008-07-10 Show GitHub Exploit DB Packet Storm
274458 - ibm websphere_application_server Unspecified vulnerability in the PropFilePasswordEncoder utility in the Security component in IBM WebSphere Application Server (WAS) 5.1 before 5.1.1.19 has unknown impact and attack vectors. NVD-CWE-noinfo
CWE-255
Credentials Management
CVE-2008-3235 2011-03-8 12:10 2008-07-22 Show GitHub Exploit DB Packet Storm
274459 - novell imanager Unspecified vulnerability in Novell iManager before 2.7 SP1 (2.7.1) allows remote attackers to delete Plug-in Studio created Property Book Pages via unknown vectors. NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3488 2011-03-8 12:10 2008-08-7 Show GitHub Exploit DB Packet Storm
274460 - adobe presenter Multiple cross-site scripting (XSS) vulnerabilities in files generated by Adobe Presenter 6 and 7 before 7.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in… CWE-79
Cross-site Scripting
CVE-2008-3515 2011-03-8 12:10 2008-08-13 Show GitHub Exploit DB Packet Storm