Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205011 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-3916 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
205012 7.8 重要
Local
Google - Android のカメラサービスの camera/src/camera_metadata.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3915 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
205013 7.8 重要
Local
Google - Android の Telephony の providers/telephony/MmsProvider.java における権限を取得される脆弱性 CWE-362
競合状態
CVE-2016-3914 2016-10-14 16:58 2016-10-3 Show GitHub Exploit DB Packet Storm
205014 7.8 重要
Local
Google - 複数の Nexus および Android One デバイス上で稼動する Android の Qualcomm サウンドドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8951 2016-10-14 16:53 2015-12-23 Show GitHub Exploit DB Packet Storm
205015 5.5 警告
Local
Linux - Android などの製品の ION サブシステムで使用される Linux Kernel における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8950 2016-10-14 16:53 2015-05-13 Show GitHub Exploit DB Packet Storm
205016 7.8 重要
Local
Google - Android のメディアサーバの media/libmediaplayerservice/MediaPlayerService.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3913 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
205017 7.8 重要
Local
Google - Android のフレームワーク API における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3912 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
205018 7.8 重要
Local
Google - Android の Zygote の core/java/android/os/Process.java における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3911 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
205019 7.8 重要
Local
Google - Android のメディアサーバの services/soundtrigger/SoundTriggerHwService.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3910 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
205020 7.8 重要
Local
Google - Android のメディアサーバの libstagefright の SoftMPEG4 コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3909 2016-10-14 16:51 2016-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349401 - toast_forums toast_forums Multiple cross-site scripting (XSS) vulnerabilities in toast.asp in Toast Forums 1.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) author, (2) subject, (3) mes… NVD-CWE-Other
CVE-2006-1414 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349402 - dotnetbb dotnetbb_forums Cross-site scripting (XSS) vulnerability in iforget.aspx in dotNetBB 2.42EC SP 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the em parameter. NVD-CWE-Other
CVE-2006-1415 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349403 - xigla absolute_faq_manager_.net Cross-site scripting (XSS) vulnerability in afmsearch.aspx in Absolute FAQ Manager .NET 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search module pa… NVD-CWE-Other
CVE-2006-1416 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349404 - caloris_planitia_technologies web_quiz_pro Multiple cross-site scripting (XSS) vulnerabilities in Caloris Planitia Online Quiz System (aka Web Quiz pro), possibly 1.0, allow remote attackers to inject arbitrary web script or HTML via the (1) … CWE-79
Cross-site Scripting
CVE-2006-1417 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349405 - caloris_planitia_technologies e-school_management_system Cross-site scripting (XSS) vulnerability in default.asp in Caloris Planitia E-School Management System 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the msg param… NVD-CWE-Other
CVE-2006-1418 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349406 - caloris_planitia_technologies e-school_management_system A new version of School Management System was released on May 28, 2006. NVD-CWE-Other
CVE-2006-1418 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349407 - web-app.org webapp Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) id, (3) num, (4) board, (5) c… NVD-CWE-Other
CVE-2006-1427 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349408 - coinsoft_technologies phpcoin Multiple cross-site scripting (XSS) vulnerabilities in phpCOIN 1.2.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the fs parameter to (1) mod.php or (2) mod_print.php. NVD-CWE-Other
CVE-2006-1428 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349409 - fusionzone classifiedzone Cross-site scripting (XSS) vulnerability in accountlogon.cfm in classifiedZONE 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the rtn parameter. NVD-CWE-Other
CVE-2006-1429 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm
349410 - controlzx hms Multiple cross-site scripting (XSS) vulnerabilities in CONTROLzx HMS (formerly DRZES) 3.3.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dedicatedPlanID param… NVD-CWE-Other
CVE-2006-1430 2017-07-20 10:30 2006-03-29 Show GitHub Exploit DB Packet Storm