Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 26, 2025, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
941 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows 11
Microsoft Windows Server 2019
Microsoft Window…
Win32k の特権の昇格の脆弱性 CWE-416
CWE-noinfo
CVE-2024-30028 2025-01-17 15:02 2024-05-14 Show GitHub Exploit DB Packet Storm
942 7.8 重要
Local
Progress Software Corporation telerik reporting Progress Software Corporation の telerik reporting における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
CWE-502
CVE-2024-1801 2025-01-17 15:01 2024-03-20 Show GitHub Exploit DB Packet Storm
943 5.9 警告
Network
Devolutions Devolutions Remote Desktop Manager Devolutions の Devolutions Remote Desktop Manager における不完全なクリーンアップに関する脆弱性 CWE-459
不完全なクリーンアップ
CVE-2024-2403 2025-01-17 15:01 2024-03-13 Show GitHub Exploit DB Packet Storm
944 5.4 警告
Network
Wpmet ElementsKit Elementor addons Wpmet の WordPress 用 ElementsKit Elementor addons におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-3650 2025-01-17 15:01 2024-05-2 Show GitHub Exploit DB Packet Storm
945 7.8 重要
Local
Progress Software Corporation telerik reporting Progress Software Corporation の telerik reporting における信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
CWE-502
CVE-2024-4200 2025-01-17 15:00 2024-05-15 Show GitHub Exploit DB Packet Storm
946 6.5 警告
Network
Progress Software Corporation telerik reporting Progress Software Corporation の telerik reporting における XML 外部エンティティの脆弱性 CWE-611
CWE-611
CVE-2024-4357 2025-01-17 15:00 2024-05-15 Show GitHub Exploit DB Packet Storm
947 5.3 警告
Network
BoldGrid W3 Total Cache BoldGrid の WordPress 用 W3 Total Cache における認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2024-12006 2025-01-17 15:00 2024-12-1 Show GitHub Exploit DB Packet Storm
948 5.3 警告
Network
vyperlang vyper vyperlang の Python 用 vyper における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2024-24564 2025-01-17 15:00 2024-02-26 Show GitHub Exploit DB Packet Storm
949 6.1 警告
Network
sfu open journal systems sfu の open journal systems におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-25436 2025-01-17 15:00 2024-03-1 Show GitHub Exploit DB Packet Storm
950 5.3 警告
Network
vyperlang vyper vyperlang の Python 用 vyper における脆弱性 CWE-119
CWE-noinfo
CVE-2024-26149 2025-01-17 15:00 2024-02-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276111 - gkrellm gkrellm Buffer overflow in gkrellmd for gkrellm 2.1.x before 2.1.14 may allow remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2003-0723 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276112 - cisco resource_manager
resource_manager_essentials
ciscoworks_common_management_foundation
ciscoworks_cd1
CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly in… NVD-CWE-Other
CVE-2003-0731 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276113 - padl_software pam_ldap Unknown vulnerability in the pam_filter mechanism in pam_ldap before version 162, when LDAP based authentication is being used, allows users to bypass host-based access restrictions and log onto the … NVD-CWE-Other
CVE-2003-0734 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276114 - castle_rock_computing snmpc SNMPc 6.0.8 and earlier performs authentication to the server on the client side, which allows remote attackers to gain privileges by decrypting the password that is returned by the server. NVD-CWE-Other
CVE-2003-0745 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276115 - py-membres py-membres secure.php in PY-Membres 4.2 and earlier allows remote attackers to bypass authentication by setting the adminpy parameter. NVD-CWE-Other
CVE-2003-0750 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276116 - py-membres py-membres SQL injection vulnerability in pass_done.php for PY-Membres 4.2 and earlier allows remote attackers to execute arbitrary SQL queries via the email parameter. NVD-CWE-Other
CVE-2003-0751 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276117 - newsphp newsphp nphpd.php in newsPHP 216 and earlier allows remote attackers to read arbitrary files via a full pathname to the target file in the nphp_config[LangFile] parameter. NVD-CWE-Other
CVE-2003-0753 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276118 - newsphp newsphp nphpd.php in newsPHP 216 and earlier allows remote attackers to bypass authentication via an HTTP request with a modified nphp_users array, which is used for authentication. NVD-CWE-Other
CVE-2003-0754 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276119 - gtkftpd gtkftp Buffer overflow in sys_cmd.c for gtkftpd 1.0.4 and earlier allows remote attackers to execute arbitrary code by creating long directory names and listing them with a LIST command. NVD-CWE-Other
CVE-2003-0755 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm
276120 - sitebuilder sitebuilder Directory traversal vulnerability in sitebuilder.cgi in SiteBuilder 1.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the selectedpage parameter. NVD-CWE-Other
CVE-2003-0756 2008-09-11 04:20 2003-10-20 Show GitHub Exploit DB Packet Storm