Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207451 7.8 重要
Local
Google - Android のメディアサーバの services/camera/libcameraservice/device3/Camera3Device.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2449 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207452 7.8 重要
Local
Google - Android のメディアサーバの media/libmediaplayerservice/nuplayer/NuPlayerStreamListener.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2448 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207453 7.8 重要
Local
Google - Android の Binder の libs/binder/IPCThreadState.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2440 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207454 8.8 重要
Adjacent
Google - Android の Bluetooth の btif/src/btif_dm.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-2439 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207455 7.8 重要
Local
Google - Nexus 6 および Android One デバイス上で稼動する Android の Qualcomm TrustZone コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2432 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207456 7.8 重要
Local
Google - Nexus および Android One デバイス上で稼動する Android の Qualcomm TrustZone コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2431 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207457 7.8 重要
Local
Google - Android の Debuggerd の libbacktrace/Backtrace.cpp における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2430 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207458 9.8 緊急
Network
Google - Android のメディアサーバの libFLAC/stream_decoder.c における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-2429 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207459 9.8 緊急
Network
Google - Android のメディアサーバの libAACdec/src/aacdec_drc.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-2428 2016-05-12 16:43 2016-05-2 Show GitHub Exploit DB Packet Storm
207460 7.8 重要
Local
Linux - MSM デバイス用 QuIC Android コントリビューションなどで使用される Linux Kernel 用 WLAN ドライバにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2015-0571 2016-05-12 14:48 2015-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346011 - squid squid The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference. NVD-CWE-Other
CVE-2005-0097 2017-10-11 10:29 2005-01-11 Show GitHub Exploit DB Packet Storm
346012 - squirrelmail squirrelmail PHP remote file inclusion vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to execute arbitrary PHP code by modifying a URL parameter to reference a URL on a remote w… CWE-94
Code Injection
CVE-2005-0103 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346013 - squirrelmail squirrelmail Cross-site scripting (XSS) vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via certain integer variables. NVD-CWE-Other
CVE-2005-0104 2017-10-11 10:29 2005-01-29 Show GitHub Exploit DB Packet Storm
346014 - linux linux_kernel Linux kernel 2.6 on Itanium (ia64) architectures allows local users to cause a denial of service via a "missing Itanium syscall table entry." NVD-CWE-Other
CVE-2005-0137 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346015 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new t… NVD-CWE-Other
CVE-2005-0141 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346016 - mozilla firefox
mozilla
thunderbird
Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or … NVD-CWE-Other
CVE-2005-0142 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346017 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks. NVD-CWE-Other
CVE-2005-0143 2017-10-11 10:29 2005-03-23 Show GitHub Exploit DB Packet Storm
346018 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phish… NVD-CWE-Other
CVE-2005-0144 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346019 - mozilla firefox Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user us… NVD-CWE-Other
CVE-2005-0145 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346020 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click p… NVD-CWE-Other
CVE-2005-0146 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm