Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 24, 2025, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
81 5.4 警告
Network
Leap13 premium addons Leap13 の WordPress 用 premium addons におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2000 2025-01-24 11:00 2024-03-13 Show GitHub Exploit DB Packet Storm
82 4.3 警告
Network
WP Ninjas, LLC. Ninja Forms Saturday Drive の WordPress 用 Ninja Forms におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2113 2025-01-24 11:00 2024-03-29 Show GitHub Exploit DB Packet Storm
83 5.4 警告
Network
Leap13 premium addons Leap13 の WordPress 用 premium addons におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2238 2025-01-24 11:00 2024-03-13 Show GitHub Exploit DB Packet Storm
84 4.9 警告
Network
openautomationsoftware oas platform openautomationsoftware の oas platform における脆弱性 New CWE-130
CWE-Other
CVE-2024-24976 2025-01-24 11:00 2024-04-3 Show GitHub Exploit DB Packet Storm
85 4.8 警告
Network
wpmaspik maspik wpmaspik の WordPress 用 maspik におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-25101 2025-01-24 11:00 2024-03-13 Show GitHub Exploit DB Packet Storm
86 5.4 警告
Network
Esri Portal for ArcGIS Esri の Portal for ArcGIS におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-25709 2025-01-24 11:00 2024-04-4 Show GitHub Exploit DB Packet Storm
87 5.4 警告
Network
Themeisle otter blocks ThemeIsle の WordPress 用 otter blocks におけるクロスサイトスクリプティングの脆弱性 New CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-1684 2025-01-24 10:59 2024-03-13 Show GitHub Exploit DB Packet Storm
88 9.1 緊急
Network
デル smartfabric os10 デルの smartfabric os10 における脆弱性 New CWE-923
CWE-noinfo
CVE-2023-28078 2025-01-24 10:44 2023-03-10 Show GitHub Exploit DB Packet Storm
89 9.8 緊急
Network
デル Dell Enterprise SONiC Distribution デルの Dell Enterprise SONiC Distribution における脆弱性 New CWE-20
CWE-noinfo
CVE-2023-32484 2025-01-24 10:44 2023-05-9 Show GitHub Exploit DB Packet Storm
90 8.8 重要
Network
Leap13 premium addons Leap13 の WordPress 用 premium addons における認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2023-37869 2025-01-24 10:44 2023-07-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274831 - rim blackberry_enterprise_server
blackberry_professional_software
Multiple unspecified vulnerabilities in the PDF distiller in the Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server (BES) software 4.1.3 through 4.1.6 and BlackBerr… NVD-CWE-noinfo
CVE-2009-2646 2009-08-6 13:00 2009-07-31 Show GitHub Exploit DB Packet Storm
274832 - microsoft internet_explorer Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16473 allows remote attackers to cause a denial of service (CPU consumption) via an XML document composed of a long series o… CWE-399
 Resource Management Errors
CVE-2009-2668 2009-08-6 13:00 2009-08-6 Show GitHub Exploit DB Packet Storm
274833 - ibm tivoli_identity_manager Multiple cross-site scripting (XSS) vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0 allow remote attackers to inject arbitrary web script or HTML by entering an unspecified URL in (1) the s… CWE-79
Cross-site Scripting
CVE-2009-2316 2009-08-5 14:25 2009-07-6 Show GitHub Exploit DB Packet Storm
274834 - ibm tivoli_identity_manager Multiple session fixation vulnerabilities in IBM Tivoli Identity Manager (ITIM) 5.0.0.6 allow remote attackers to hijack web sessions via unspecified vectors involving the (1) console and (2) self se… CWE-20
 Improper Input Validation 
CVE-2009-2583 2009-08-4 14:25 2009-07-24 Show GitHub Exploit DB Packet Storm
274835 - xoops xoops Cross-site scripting (XSS) vulnerability in pmlite.php in XOOPS 2.3.1 and 2.3.2a allows remote attackers to inject arbitrary web script or HTML via a STYLE attribute in a URL BBcode tag in a private … CWE-79
Cross-site Scripting
CVE-2008-6885 2009-08-3 13:00 2009-08-1 Show GitHub Exploit DB Packet Storm
274836 - apache roller Cross-site scripting (XSS) vulnerability in Apache Roller 2.3, 3.0, 3.1, and 4.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action. CWE-79
Cross-site Scripting
CVE-2008-6879 2009-07-31 13:00 2009-07-31 Show GitHub Exploit DB Packet Storm
274837 - kerio kerio_mailserver Cross-site scripting (XSS) vulnerability in the Integration page in the WebMail component in Kerio MailServer 6.6.0, 6.6.1, 6.6.2, and 6.7.0 allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2009-2636 2009-07-29 13:00 2009-07-29 Show GitHub Exploit DB Packet Storm
274838 - scott_courtney links_package Cross-site scripting (XSS) vulnerability in the Links Related module in the Links Package 5.x before 5.x-1.13 and 6.x before 6.x-1.2, a module for Drupal, allows remote authenticated users to inject … CWE-79
Cross-site Scripting
CVE-2009-2610 2009-07-28 03:30 2009-07-28 Show GitHub Exploit DB Packet Storm
274839 - prosmdr prosmdr SQL injection vulnerability in login.aspx in ProSMDR allows remote attackers to execute arbitrary SQL commands via the txtUser parameter. NOTE: the provenance of this information is unknown; the deta… CWE-89
SQL Injection
CVE-2009-2612 2009-07-28 03:30 2009-07-28 Show GitHub Exploit DB Packet Storm
274840 - datachecknh linkpal Multiple cross-site scripting (XSS) vulnerabilities in DataCheck Solutions LinkPal 1.x allow remote attackers to inject arbitrary web script or HTML via the page parameter to (1) z_loginfailed.asp, (… CWE-79
Cross-site Scripting
CVE-2009-2613 2009-07-28 03:30 2009-07-28 Show GitHub Exploit DB Packet Storm