Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240511 4.3 警告 Bharat Mediratta - Gallery の管理サブシステムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1113 2012-09-5 16:51 2012-04-3 Show GitHub Exploit DB Packet Storm
240512 9.3 危険 アドビシステムズ - Adobe Flash Player における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-0779 2012-09-5 16:37 2012-05-4 Show GitHub Exploit DB Packet Storm
240513 2.9 注意 シマンテック - Symantec PGP Universal Server における秘密鍵を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3582 2012-09-5 15:12 2012-08-30 Show GitHub Exploit DB Packet Storm
240514 7.7 危険 GarrettCom, Inc. - GarrettCom Magnum MNS-6K の Management Software アプリケーションにおける権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3014 2012-09-5 15:09 2012-08-30 Show GitHub Exploit DB Packet Storm
240515 10 危険 アドビシステムズ - Adobe Photoshop におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0275 2012-09-5 14:27 2012-08-30 Show GitHub Exploit DB Packet Storm
240516 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC NetWorker の nsrd RPC サービスにおけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2012-2288 2012-09-5 14:26 2012-09-4 Show GitHub Exploit DB Packet Storm
240517 6.8 警告 ZTE - ZTE ZXDSL の accessaccount.cgi におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4746 2012-09-5 11:48 2012-08-31 Show GitHub Exploit DB Packet Storm
240518 4.3 警告 The Collective - Acuity CMS の admin/login.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4745 2012-09-5 11:47 2012-08-31 Show GitHub Exploit DB Packet Storm
240519 4.3 警告 eos.pe - Zeroboard 用 Siche Search モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4744 2012-09-5 11:46 2012-08-31 Show GitHub Exploit DB Packet Storm
240520 7.5 危険 eos.pe - Zeroboard 用 Siche Search モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4743 2012-09-5 11:45 2012-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267981 7.8 HIGH
Local
google android An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) (with Fingerprint support) software. The check of an application's signature can be bypassed during installation. The Sams… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2016-11044 2024-11-21 11:45 2020-04-7 Show GitHub Exploit DB Packet Storm
267982 7.5 HIGH
Network
google android An issue was discovered on Samsung mobile devices with M(6.0) software. The S/MIME implementation in EAS uses DES (where 3DES is intended). The Samsung ID is SVE-2016-5871 (June 2016). CWE-326
Inadequate Encryption Strength
CVE-2016-11043 2024-11-21 11:45 2020-04-7 Show GitHub Exploit DB Packet Storm
267983 7.5 HIGH
Network
google android An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software. There is a SIM Lock bypass. The Samsung ID is SVE-2016-5381 (June 2016). CWE-287
Improper Authentication
CVE-2016-11042 2024-11-21 11:45 2020-04-7 Show GitHub Exploit DB Packet Storm
267984 4.6 MEDIUM
Physics
google android An issue was discovered on Samsung mobile devices with KK(4.4) software. Attackers can bypass the lockscreen by sending an AT command over USB. The Samsung ID is SVE-2015-5301 (June 2016). CWE-287
Improper Authentication
CVE-2016-11041 2024-11-21 11:45 2020-04-7 Show GitHub Exploit DB Packet Storm
267985 9.8 CRITICAL
Network
odata4j_project odata4j odata4j 0.7.0 allows ExecuteJPQLQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. CWE-89
SQL Injection
CVE-2016-11024 2024-11-21 11:45 2020-03-31 Show GitHub Exploit DB Packet Storm
267986 9.8 CRITICAL
Network
odata4j_project odata4j odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued. CWE-89
SQL Injection
CVE-2016-11023 2024-11-21 11:45 2020-03-31 Show GitHub Exploit DB Packet Storm
267987 7.2 HIGH
Network
netgear prosafe_wc9500_firmware
prosafe_wc7600_firmware
prosafe_wc7520_firmware
NETGEAR Prosafe WC9500 5.1.0.17, WC7600 5.1.0.17, and WC7520 2.5.0.35 devices allow a remote attacker to execute code with root privileges via shell metacharacters in the reqMethod parameter to login… CWE-78
OS Command 
CVE-2016-11022 2024-11-21 11:45 2020-03-24 Show GitHub Exploit DB Packet Storm
267988 6.5 MEDIUM
Network
zohocorp manageengine_password_manager_pro In ZOHO Password Manager Pro (PMP) 8.3.0 (Build 8303) and 8.4.0 (Build 8400,8401,8402), underprivileged users can obtain sensitive information (entry password history) via a vulnerable hidden service. CWE-200
Information Exposure
CVE-2016-1159 2024-11-21 11:45 2020-03-10 Show GitHub Exploit DB Packet Storm
267989 7.2 HIGH
Network
dlink dcs-930l_firmware setSystemCommand on D-Link DCS-930L devices before 2.12 allows a remote attacker to execute code via an OS command in the SystemCommand parameter. CWE-78
OS Command 
CVE-2016-11021 2024-11-21 11:45 2020-03-9 Show GitHub Exploit DB Packet Storm
267990 9.8 CRITICAL
Network
kunena kunena Kunena before 5.0.4 does not restrict avatar file extensions to gif, jpeg, jpg, and png. This can lead to XSS and remote code execution. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2016-11020 2024-11-21 11:45 2020-02-26 Show GitHub Exploit DB Packet Storm