Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200141 7.8 重要
Local
Google - Android のメディアサーバの libstagefright の codecs/mp3dec/SoftMP3.cpp におけるバッファオーバーフローの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3871 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200142 7.8 重要
Local
Google - Android のメディアサーバの libstagefright の omx/SimpleSoftOMXComponent.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3870 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200143 7.8 重要
Local
Google - 複数の Nexus および Pixel C デバイス上で稼動する Android の Broadcom Wi-Fi ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3869 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200144 7.8 重要
Local
Google - Nexus 5X および 6P デバイス上で稼動する Android の Qualcomm IPA ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3867 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200145 7.8 重要
Local
Google - 複数の Nexus デバイス上で稼動する Android の Qualcomm サウンドドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3866 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200146 7.8 重要
Local
Google - Nexus 5X および 9 デバイス上で稼動する Android の Synaptics タッチスクリーンドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3865 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200147 7.8 重要
Local
Google - 複数の Nexus および Android One デバイス上で稼動する Android の Qualcomm ラジオインターフェースレイヤにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3864 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200148 7.8 重要
Local
Google - Android のメディアサーバの media/ExifInterface.java における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-3862 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200149 7.8 重要
Local
Google - Android の LibUtils における任意のコードを実行される脆弱性 CWE-119
CWE-264
CVE-2016-3861 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
200150 7.8 重要
Local
Google - Nexus 5X および 6P デバイス上で稼動する Android の Qualcomm システムドライバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-3858 2016-09-14 16:45 2016-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347291 - ibm lotus_domino_server The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authen… CWE-16
Configuration
CVE-2008-7253 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347292 - oracle database_server Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02. NVD-CWE-noinfo
CVE-2005-4884 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347293 - jce-tech php_calendars_script install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a … CWE-16
CWE-264
Configuration
Permissions, Privileges, and Access Controls
CVE-2010-0380 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347294 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action… CWE-89
SQL Injection
CVE-2010-0381 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347295 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action.… CWE-89
SQL Injection
CVE-2010-0377 2010-01-23 03:30 2010-01-22 Show GitHub Exploit DB Packet Storm
347296 - sambar sambar_server search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter. NVD-CWE-Other
CVE-2000-0835 2010-01-16 14:00 2000-11-14 Show GitHub Exploit DB Packet Storm
347297 - webtrends reporting_center WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an… CWE-200
Information Exposure
CVE-2002-0596 2010-01-16 14:00 2002-06-18 Show GitHub Exploit DB Packet Storm
347298 - tftpd32 tftpd32 tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2353 2009-11-24 14:15 2002-12-31 Show GitHub Exploit DB Packet Storm
347299 - jean-jacques_sarton mtink Buffer overflow in MTink in the printer-filters-utils package allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2005-4604 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
347300 - openoffice openoffice OpenOffice.org 2.0 and earlier, when hyperlinks has been disabled, does not prevent the user from clicking the WWW-browser button in the Hyperlink dialog, which makes it easier for attackers to trick… NVD-CWE-Other
CVE-2005-4636 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm