Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203171 7.8 重要
Local
Google - Android の Shell コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3833 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203172 7.8 重要
Local
Google - Android のフレームワーク API における不特定の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3832 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203173 7.5 重要
Network
Google - Android の Telephony コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3831 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203174 5.5 警告
Local
Google - Android のメディアサーバの libstagefright の codecs/aacdec/SoftAAC2.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3830 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203175 5.5 警告
Local
Google - Android のメディアサーバの ih264d デコーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3829 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203176 5.5 警告
Local
Google - Android のメディアサーバの decoder/ih264d_api.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3828 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203177 5.5 警告
Local
Google - Android のメディアサーバの libstagefright の codecs/hevcdec/SoftHEVC.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3827 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203178 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/misc/qseecom.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9887 2016-08-12 16:12 2016-08-1 Show GitHub Exploit DB Packet Storm
203179 7.8 重要
Local
Google - Android の Qualcomm コンポーネントの drivers/thermal/supply_lm_core.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3855 2016-08-12 11:13 2016-08-1 Show GitHub Exploit DB Packet Storm
203180 7.8 重要
Local
Google - Android の Qualcomm コンポーネントの drivers/media/video/msm/msm_mctl_buf.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3854 2016-08-12 11:13 2016-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291531 8.8 HIGH
Network
vtiger vtiger_crm vTiger CRM 5.3 and 5.4: 'files' Upload Folder Arbitrary PHP Code Execution Vulnerability CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2013-3591 2024-11-21 10:53 2020-02-8 Show GitHub Exploit DB Packet Storm
291532 8.8 HIGH
Network
cisco linksys_wrt110_firmware Cross-site request forgery (CSRF) vulnerability in Cisco Linksys WRT110 allows remote attackers to hijack the authentication of users for requests that have unspecified impact via unknown vectors. CWE-352
 Origin Validation Error
CVE-2013-3568 2024-11-21 10:53 2020-02-7 Show GitHub Exploit DB Packet Storm
291533 5.3 MEDIUM
Network
videolan vlc_media_player The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authen… CWE-200
Information Exposure
CVE-2013-3564 2024-11-21 10:53 2020-02-7 Show GitHub Exploit DB Packet Storm
291534 6.1 MEDIUM
Network
videolan
opensuse
vlc_media_player
opensuse
Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interface in VideoLAN VLC Media Player before 2.0.7 allow remote attackers to inject arbitrary web script or HTML via the (1) command p… CWE-79
Cross-site Scripting
CVE-2013-3565 2024-11-21 10:53 2020-02-1 Show GitHub Exploit DB Packet Storm
291535 7.8 HIGH
Local
mpc-hc mpc-hc Buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0 allows remote attackers to execute arbitrary code via a crafted RealMedia .rm file CWE-120
Classic Buffer Overflow
CVE-2013-3489 2024-11-21 10:53 2020-02-1 Show GitHub Exploit DB Packet Storm
291536 7.8 HIGH
Local
mpc-hc mpc-hc Stack-based buffer overflow in Media Player Classic - Home Cinema (MPC-HC) before 1.7.0.7858 allows remote attackers to execute arbitrary code via a crafted MPEG-2 Transport Stream (M2TS) file. CWE-120
Classic Buffer Overflow
CVE-2013-3488 2024-11-21 10:53 2020-02-1 Show GitHub Exploit DB Packet Storm
291537 7.2 HIGH
Network
netapp oncommand_system_manager NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to inject arbitrary commands in the Halt/Reboot interface. CWE-78
OS Command 
CVE-2013-3322 2024-11-21 10:53 2020-01-31 Show GitHub Exploit DB Packet Storm
291538 7.5 HIGH
Network
netapp oncommand_system_manager NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to include arbitrary files through specially crafted requests to the "diagnostic" page using the SnapMirror log path parameter. CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2013-3321 2024-11-21 10:53 2020-01-30 Show GitHub Exploit DB Packet Storm
291539 6.1 MEDIUM
Network
netapp oncommand_system_manager Cross-site Scripting (XSS) vulnerability in NetApp OnCommand System Manager before 2.2 allows remote attackers to inject arbitrary web script or HTML via the 'full-name' and 'comment' fields. CWE-79
Cross-site Scripting
CVE-2013-3320 2024-11-21 10:53 2020-01-30 Show GitHub Exploit DB Packet Storm
291540 9.8 CRITICAL
Network
netgear wnr1000_firmware Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key. CWE-287
Improper Authentication
CVE-2013-3317 2024-11-21 10:53 2020-01-30 Show GitHub Exploit DB Packet Storm