Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240461 6.8 警告 php invoice - PHP Invoice の home.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5110 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240462 7.5 危険 vBulletin Solutions, Inc. - Jelsoft vBulletin の global.php における SQL インジェクションの脆弱性 - CVE-2006-5104 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240463 7.5 危険 Netwin Ltd - WEB//NEWS の parse/parser.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5100 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
240464 7.5 危険 paul schudar - TagIt! Tagboard の Tagmin Control Center における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5093 2012-09-25 15:36 2006-09-29 Show GitHub Exploit DB Packet Storm
240465 6.8 警告 phoenix evolution - PECMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5090 2012-09-25 15:36 2006-09-29 Show GitHub Exploit DB Packet Storm
240466 7.5 危険 jl webworks - QB の acc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5081 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
240467 7.5 危険 php arena - Matt Humphrey paBugs の class.mysql.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5079 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
240468 5.1 警告 minerva - Chris Smith Minerva における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5077 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
240469 5.1 警告 php invoice - PHP Invoice の home.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5074 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
240470 6.2 警告 Mono Project - Novell Mono の System.CodeDom.Compiler クラスにおける任意のコードを実行される脆弱性 - CVE-2006-5072 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267451 7.0 HIGH
Local
google android OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspec… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2462 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267452 7.0 HIGH
Local
google android OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspeci… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2461 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267453 5.5 MEDIUM
Local
google android mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-2460 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267454 5.5 MEDIUM
Local
google android mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-2459 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267455 5.5 MEDIUM
Local
google android The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive … CWE-200
Information Exposure
CVE-2016-2458 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267456 5.5 MEDIUM
Local
google android server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2457 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267457 7.0 HIGH
Local
google android The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2456 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267458 5.5 MEDIUM
Local
google android The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024. CWE-20
 Improper Input Validation 
CVE-2016-2454 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267459 7.0 HIGH
Local
google android_one The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27549705. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2453 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267460 7.8 HIGH
Local
google android codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2452 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm