Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205721 7.8 重要
Local
Xen プロジェクト - Linux Kernel の arch/x86/kernel/process_64.c の __switch_to 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3157 2016-04-28 10:56 2016-03-16 Show GitHub Exploit DB Packet Storm
205722 5.5 警告
Local
Google - Android のフレームワークコンポーネントの server/content/ContentService.java における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2426 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205723 5.5 警告
Local
Google - Android の AOSP メールの mail/compose/ComposeActivity.java における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2425 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205724 5.5 警告
Local
Google - Android の SyncStorageEngine の server/content/SyncStorageEngine.java におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-2424 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205725 6.1 警告
Physics
Google - Android の Telephony の server/telecom/CallsManager.java における Factory Reset Protection 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2423 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205726 7.8 重要
Local
Google - Android の Wi-Fi における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2422 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205727 6.1 警告
Physics
Google - Android のセットアップウィザードにおける Factory Reset Protection 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2421 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205728 9.8 緊急
Network
Google - Android のメディアサーバの media/libmedia/IDrm.cpp におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2419 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205729 9.8 緊急
Network
Google - Android のメディアサーバの media/libmedia/IOMX.cpp におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2417 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
205730 9.8 緊急
Network
Google - Android のメディアサーバの libs/gui/BufferQueueConsumer.cpp における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2416 2016-04-28 09:50 2016-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351351 - softwin bitdefender_antivirus Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lack of quoting of the … NVD-CWE-Other
CVE-2005-1286 2016-10-18 12:18 2005-05-2 Show GitHub Exploit DB Packet Storm
351352 - asp_press acs_blog inc_login_check.asp ACS Blog 0.8 through 1.1.3 allows remote attackers to gain administrator privileges via the "in" value in a cookie. NVD-CWE-Other
CVE-2005-1288 2016-10-18 12:18 2005-05-2 Show GitHub Exploit DB Packet Storm
351353 - e-cart e-cart index.cgi in E-Cart 2004 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) art and possibly (2) cat parameters. NVD-CWE-Other
CVE-2005-1289 2016-10-18 12:18 2005-05-2 Show GitHub Exploit DB Packet Storm
351354 - phpbb_group phpbb Multiple cross-site scripting (XSS) vulnerabilities in phpBB 2.0.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) u parameter to profile.php, (2) highlight par… NVD-CWE-Other
CVE-2005-1290 2016-10-18 12:18 2005-05-2 Show GitHub Exploit DB Packet Storm
351355 - storeportal storeportal Multiple SQL injection vulnerabilities in default.asp in StorePortal 2.63 allow remote attackers to execute arbitrary SQL commands via the (1) language, (2) bpic, (3) idcategory, (4) content, (5) key… NVD-CWE-Other
CVE-2005-1293 2016-10-18 12:18 2005-05-2 Show GitHub Exploit DB Packet Storm
351356 - nokia affix The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a socket call with a negative protocol value, which is used as an array index. NVD-CWE-Other
CVE-2005-1294 2016-10-18 12:18 2005-04-24 Show GitHub Exploit DB Packet Storm
351357 - include.cgi include.cgi include.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. NVD-CWE-Other
CVE-2005-1295 2016-10-18 12:18 2005-04-25 Show GitHub Exploit DB Packet Storm
351358 - include.cgi include.cgi include.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument. NVD-CWE-Other
CVE-2005-1296 2016-10-18 12:18 2005-04-25 Show GitHub Exploit DB Packet Storm
351359 - include.cgi include.cgi Cross-site scripting (XSS) vulnerability in the include.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument. NVD-CWE-Other
CVE-2005-1297 2016-10-18 12:18 2005-04-25 Show GitHub Exploit DB Packet Storm
351360 - inserter.cgi inserter.cgi The inserter.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument. NVD-CWE-Other
CVE-2005-1298 2016-10-18 12:18 2005-04-25 Show GitHub Exploit DB Packet Storm