Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203621 7.8 重要
Local
Google
PNG Development Group
- Android で使用される libpng における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2016-3751 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203622 7.8 重要
Local
Google - Android の Parcels Framework API の libs/binder/Parcel.cpp におけるアイソレーション保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3750 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203623 8.4 重要
Local
Google - Android の LockSettingsService の server/LockSettingsService.java における画面ロックのパスワードまたはパターンを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-3749 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203624 8.4 重要
Local
Google - Android の socket サブシステムにおけるシステムコールの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3748 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203625 7.8 重要
Local
Google - Android のメディアサーバの mm-video-v4l2 vdec コンポーネントにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2016-3746 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203626 9.8 緊急
Network
Google - Android のメディアサーバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-3745 2016-07-13 17:53 2016-07-6 Show GitHub Exploit DB Packet Storm
203627 7.5 重要
Adjacent
Google - Android の Bluetooth の btif/src/btif_hh.c の create_pbuf 関数におけるバッファオーバーフローの脆弱性 CWE-119
CWE-362
CVE-2016-3744 2016-07-13 16:54 2016-07-6 Show GitHub Exploit DB Packet Storm
203628 9.8 緊急
Network
Google - Android のメディアサーバの decoder/ih264d_api.c における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3743 2016-07-13 16:54 2016-07-6 Show GitHub Exploit DB Packet Storm
203629 9.8 緊急
Network
Google - Android のメディアサーバの decoder/ih264d_process_intra_mb.c における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3742 2016-07-13 16:54 2016-07-6 Show GitHub Exploit DB Packet Storm
203630 9.8 緊急
Network
Google - Android のメディアサーバの H.264 デコーダにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3741 2016-07-13 16:54 2016-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290541 - mongodb mongodb The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possi… CWE-399
 Resource Management Errors
CVE-2013-3969 2024-11-21 10:54 2013-10-2 Show GitHub Exploit DB Packet Storm
290542 - samsung shr-5082
shr-5162
Cross-site scripting (XSS) vulnerability in Samsung SHR-5162, SHR-5082, and possibly other models, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. CWE-79
Cross-site Scripting
CVE-2013-3964 2024-11-21 10:54 2013-10-2 Show GitHub Exploit DB Packet Storm
290543 - grandstream gxv_device_firmware
gxv3500
gxv3501
gxv3504
gxv3601
gxv3601hd\/ll
gxv3611hd\/ll
gxv3615w\/p
gxv3615wp_hd
gxv3651fhd
gxv3662hd
Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, an… CWE-352
 Origin Validation Error
CVE-2013-3963 2024-11-21 10:54 2013-10-2 Show GitHub Exploit DB Packet Storm
290544 - grandstream gxv_device_firmware
gxv3500
gxv3501
gxv3504
gxv3601
gxv3601hd\/ll
gxv3611hd\/ll
gxv3615w\/p
gxv3615wp_hd
gxv3651fhd
gxv3662hd
Cross-site scripting (XSS) vulnerability in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera mode… CWE-79
Cross-site Scripting
CVE-2013-3962 2024-11-21 10:54 2013-10-2 Show GitHub Exploit DB Packet Storm
290545 - tp-link tl-sc3130
tl-sc3130g
tl-sc3171
tl-sc3171g
lm_firmware
The TP-Link IP Cameras TL-SC3171, TL-SC3130, TL-SC3130G, TL-SC3171G, and possibly other models before beta firmware LM.1.6.18P12_sign6, does not properly restrict access to certain administrative fun… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3688 2024-11-21 10:54 2013-10-2 Show GitHub Exploit DB Packet Storm
290546 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to bypass intended access restrictions via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4027 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm
290547 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to conduct unspecified file-inclusion attacks via unknown vectors. NVD-CWE-noinfo
CVE-2013-4021 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm
290548 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.3 allows remote authenticated users to bypass intended access restrictions via unspecified vectors. NVD-CWE-noinfo
CVE-2013-4020 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm
290549 - ibm maximo_asset_management Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 6.2 through 6.2.8 and 7.1 before 7.1.1.12 allows remote authenticated users to inject arbitrary web script or HTML via unspecif… CWE-79
Cross-site Scripting
CVE-2013-4019 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm
290550 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2013-4018 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm