Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203711 7.8 重要
Local
Google - Android One デバイス上で稼動する Android の MediaTek ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3771 2016-07-19 13:54 2016-07-6 Show GitHub Exploit DB Packet Storm
203712 7.8 重要
Local
Google - Android One デバイス上で稼動する Android の MediaTek ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3770 2016-07-19 13:54 2016-07-6 Show GitHub Exploit DB Packet Storm
203713 7.8 重要
Local
Google - Android の DexClassLoader の libdex/OptInvocation.cpp におけるバッファオーバーフローの脆弱性 CWE-119
CWE-264
CVE-2016-3758 2016-07-19 13:41 2016-07-6 Show GitHub Exploit DB Packet Storm
203714 7.8 重要
Local
Google - Android のメディアサーバの media/libmediaplayerservice/nuplayer/GenericSource.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-2508 2016-07-19 12:12 2016-07-6 Show GitHub Exploit DB Packet Storm
203715 7.8 重要
Local
Google - Android のメディアサーバの libstagefright における整数オーバーフローの脆弱性 CWE-119
CWE-189
CVE-2016-2507 2016-07-19 11:59 2016-07-6 Show GitHub Exploit DB Packet Storm
203716 7.8 重要
Local
Google - Android のメディアサーバの libstagefright の mpeg2ts/ATSParser.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-2505 2016-07-19 11:52 2016-07-6 Show GitHub Exploit DB Packet Storm
203717 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8890 2016-07-19 11:52 2016-07-6 Show GitHub Exploit DB Packet Storm
203718 7.8 重要
Local
Google
Linux
- Nexus 5X および 6P デバイス上で稼動する Android で使用される Linux kernel の arch/arm64/include/asm/pgtable.h における権限を取得される脆弱性 CWE-Other
その他
CVE-2014-9803 2016-07-19 11:52 2016-07-6 Show GitHub Exploit DB Packet Storm
203719 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの lib/libfdt/fdt.c における整数オーバーフローの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9802 2016-07-19 11:52 2016-07-6 Show GitHub Exploit DB Packet Storm
203720 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの makefile における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9799 2016-07-19 11:52 2016-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290361 - tripwire tripwire_enterprise Multiple cross-site scripting (XSS) vulnerabilities in ajaxRequest/methodCall.do in Tripwire Enterprise 8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) m_tar… CWE-79
Cross-site Scripting
CVE-2013-5005 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290362 - webhive timeline Unrestricted file upload vulnerability in the user profile page feature in the Timeline Plugin 4.2.5p9 for SocialEngine allows remote authenticated users to execute arbitrary code by uploading a file… NVD-CWE-Other
CVE-2013-4898 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290363 - springsignage xibo Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Digital Signage Xibo 1.4.2 allow remote attackers to hijack the authentication of administrators for requests that (1) add a… CWE-352
 Origin Validation Error
CVE-2013-4889 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290364 - springsignage xibo Cross-site scripting (XSS) vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the layout parameter in the layout page. CWE-79
Cross-site Scripting
CVE-2013-4888 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290365 - springsignage xibo SQL injection vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to execute arbitrary SQL commands via the displayid parameter. CWE-89
SQL Injection
CVE-2013-4887 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290366 - civicrm civicrm The Quick Search API in CiviCRM 4.2.0 through 4.2.9 and 4.3.0 through 4.3.3 allows remote authenticated users to bypass the validation layer and conduct SQL injection attacks via a direct request to … CWE-89
SQL Injection
CVE-2013-4662 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290367 - civicrm civicrm CiviCRM 2.0.0 through 4.2.9 and 4.3.0 through 4.3.3 does not properly enforce role-based access control (RBAC) restrictions for default custom searches, which allows remote authenticated users with t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4661 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
290368 - mcafee superscan Cross-site scripting (XSS) vulnerability in McAfee SuperScan 4.0 allows remote attackers to inject arbitrary web script or HTML via UTF-7 encoded sequences in a server response, which is not properly… CWE-79
Cross-site Scripting
CVE-2013-4884 2024-11-21 10:56 2014-01-22 Show GitHub Exploit DB Packet Storm
290369 - atmail atmail Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a different vulnerability than CVE-2013-5031, CVE-2013-5032, and CVE-2013-5033. NVD-CWE-noinfo
CVE-2013-5034 2024-11-21 10:56 2014-01-13 Show GitHub Exploit DB Packet Storm
290370 - atmail atmail Unspecified vulnerability in Atmail before 6.6.4, and 7.x before 7.1.2, has unknown impact and attack vectors, a different vulnerability than CVE-2013-5031, CVE-2013-5032, and CVE-2013-5034. NVD-CWE-noinfo
CVE-2013-5033 2024-11-21 10:56 2014-01-13 Show GitHub Exploit DB Packet Storm