Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203461 9.8 緊急
Network
アドビシステムズ - Windows および Mac OS X 上で稼動する Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-1089 2016-10-17 11:49 2016-10-6 Show GitHub Exploit DB Packet Storm
203462 5.5 警告
Local
Google - Android の Accessibility サービスにおけるタッチジャッキング攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-3923 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
203463 7.8 重要
Local
Google - Android の Telephony の libril/RilSapSocket.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3922 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
203464 7.8 重要
Local
Google - Android の Framework Listener の libsysutils/src/FrameworkListener.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3921 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
203465 5.5 警告
Local
Google - Android のメディアサーバの libstagefright の id3/ID3.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3920 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
203466 5.5 警告
Local
Google - Android の AOSP Mail の email/provider/AttachmentProvider.java における任意の添付ファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-3918 2016-10-14 17:53 2016-10-3 Show GitHub Exploit DB Packet Storm
203467 7.8 重要
Local
Google - Android のフィンガープリントログイン機能における任意のユーザとして認証される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3917 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
203468 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-3916 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
203469 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3915 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
203470 7.8 重要
Local
Google - Android の Telephony の providers/telephony/MmsProvider.java における権限を取得される脆弱性 CWE-362
競合状態
CVE-2016-3914 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346361 - graugon php_article_publisher Multiple SQL injection vulnerabilities in Graugon PHP Article Publisher 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) c parameter to index.php and the (2) id parameter to v… CWE-89
SQL Injection
CVE-2009-4807 2017-09-19 10:30 2010-04-23 Show GitHub Exploit DB Packet Storm
346362 - graugon php_article_publisher admin.php in Graugon PHP Article Publisher 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the g_admin cookie to 1. CWE-287
Improper Authentication
CVE-2009-4808 2017-09-19 10:30 2010-04-23 Show GitHub Exploit DB Packet Storm
346363 - sharing-file easy_file_sharing_web_server Directory traversal vulnerability in thumbnail.ghp in Easy File Sharing (EFS) Web Server 4.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the vfolder parameter. CWE-22
Path Traversal
CVE-2009-4809 2017-09-19 10:30 2010-04-23 Show GitHub Exploit DB Packet Storm
346364 - deslock deslock\+ The dlpcrypt.sys kernel driver 0.1.1.27 in DESlock+ 4.0.2 allows local users to gain privileges via a crafted IOCTL 0x80012010 request to the DLPCryptCore device. CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-4832 2017-09-19 10:30 2010-04-30 Show GitHub Exploit DB Packet Storm
346365 - xpressengine zeroboard lib.php in Zeroboard 4.1 pl7 allows remote attackers to execute arbitrary PHP code via a crafted parameter name, possibly related to now_connect.php. CWE-94
Code Injection
CVE-2009-4834 2017-09-19 10:30 2010-05-5 Show GitHub Exploit DB Packet Storm
346366 - moviephp movie_php_script Eval injection vulnerability in system/services/init.php in Movie PHP Script 2.0 allows remote attackers to execute arbitrary PHP code via the anticode parameter. CWE-94
Code Injection
CVE-2009-4836 2017-09-19 10:30 2010-05-6 Show GitHub Exploit DB Packet Storm
346367 - roxio cineplayer Heap-based buffer overflow in the IAManager ActiveX control in IAManager.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbitrary code via a long argument to the SetIAPlayerName metho… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4840 2017-09-19 10:30 2010-05-6 Show GitHub Exploit DB Packet Storm
346368 - roxio cineplayer Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbitrary code via a long argument to the DiskTyp… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4841 2017-09-19 10:30 2010-05-6 Show GitHub Exploit DB Packet Storm
346369 - scripts.oldguy talkback addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter. CWE-20
 Improper Input Validation 
CVE-2009-4854 2017-09-19 10:30 2010-05-8 Show GitHub Exploit DB Packet Storm
346370 - demarque typing_pal SQL injection vulnerability in demo.php in Typing Pal 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idTableProduit parameter. CWE-89
SQL Injection
CVE-2009-4860 2017-09-19 10:30 2010-05-11 Show GitHub Exploit DB Packet Storm