Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240301 10 危険 Pentaho Corporation - Pentaho BI Suite における脆弱性 - CVE-2006-5675 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
240302 7.5 危険 miniBB - miniBB における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5674 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
240303 6.8 警告 miniBB - miniBB の bb_func_txt.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5673 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
240304 7.5 危険 mysource cms - MySource CMS の web/init_mysource.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5672 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
240305 7.5 危険 p-book - P-Book における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5667 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
240306 4.6 警告 IBM - IBM Informix Dynamic Server などの製品における "セキュリティを侵害される" 脆弱性 - CVE-2006-5664 2012-09-25 15:36 2006-10-30 Show GitHub Exploit DB Packet Storm
240307 7.5 危険 michel pradel - GestArt の aide.php3 における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5612 2012-09-25 15:36 2006-10-30 Show GitHub Exploit DB Packet Storm
240308 5 警告 INCA Internet Corporation - INCA IM-204 の /cgi-bin/webcm におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5607 2012-09-25 15:36 2006-10-30 Show GitHub Exploit DB Packet Storm
240309 4.6 警告 IBM - IBM Informix Dynamic Serve などの製品における権限を取得される脆弱性 - CVE-2006-5663 2012-09-25 15:36 2006-10-30 Show GitHub Exploit DB Packet Storm
240310 2.1 注意 pam extern - PAM_extern におけるパスワードを取得される脆弱性 - CVE-2006-5659 2012-09-25 15:36 2006-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268131 5.5 MEDIUM
Local
bouncycastle
google
legion-of-the-bouncy-castle-java-crytography-api
android
The AES-GCM specification in RFC 5084, as used in Android 5.x and 6.x, recommends 12 octets for the aes-ICVlen parameter field, which might make it easier for attackers to defeat a cryptographic prot… CWE-200
Information Exposure
CVE-2016-2427 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268132 6.1 MEDIUM
Physics
google android server/telecom/CallsManager.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consider whether a device is provisioned… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2423 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268133 7.8 HIGH
Local
google android Wi-Fi in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not prevent use of a Wi-Fi CA certificate in an unrelated CA role, which allows attackers to … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2422 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268134 6.1 MEDIUM
Physics
google android Setup Wizard in Android 5.1.x before 5.1.1 and 6.x before 2016-04-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2421 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268135 7.8 HIGH
Local
google android rootdir/init.rc in Android 4.x before 4.4.4 does not ensure that the /data/tombstones directory exists for the Debuggerd component, which allows attackers to gain privileges via a crafted application… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2420 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268136 9.8 CRITICAL
Network
google android media/libmedia/IDrm.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize a certain key-request data structure, which allows attackers to obtain sensitive information from process m… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2419 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268137 9.8 CRITICAL
Network
google android media/libmedia/IOMX.cpp in mediaserver in Android 6.x before 2016-04-01 does not initialize certain metadata buffer pointers, which allows attackers to obtain sensitive information from process memor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2418 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268138 9.8 CRITICAL
Network
google android media/libmedia/IOMX.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not initialize a parameter data structure, which allows atta… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2417 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268139 9.8 CRITICAL
Network
google android libs/gui/BufferQueueConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for the android.permission.DUMP permissio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2416 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm
268140 5.5 MEDIUM
Local
google android exchange/eas/EasAutoDiscover.java in the Autodiscover implementation in Exchange ActiveSync in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to obtain sen… CWE-200
Information Exposure
CVE-2016-2415 2024-11-21 11:48 2016-04-18 Show GitHub Exploit DB Packet Storm