Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241221 6.9 警告 Intuit - Intuit QuickBooks における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5198 2012-09-10 13:46 2012-09-6 Show GitHub Exploit DB Packet Storm
241222 6.9 警告 Pixia - Pixia における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5197 2012-09-10 13:44 2012-09-6 Show GitHub Exploit DB Packet Storm
241223 6.9 警告 Dominik Reichl - KeePass Password Safe における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5196 2012-09-10 13:42 2012-09-6 Show GitHub Exploit DB Packet Storm
241224 6.9 警告 ROXIO - Roxio MyDVD における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5195 2012-09-10 13:31 2012-09-6 Show GitHub Exploit DB Packet Storm
241225 3.6 注意 X.Org Foundation - X.Org xserver の Render 拡張における任意のメモリを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2010-4819 2012-09-7 16:51 2010-08-20 Show GitHub Exploit DB Packet Storm
241226 8.5 危険 X.Org Foundation - X.Org xserver の GLX 拡張におけるサービス運用妨害 (サーバクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-4818 2012-09-7 16:51 2011-01-10 Show GitHub Exploit DB Packet Storm
241227 4.3 警告 phpList - phpList の public_html/lists/admin/ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2741 2012-09-7 16:35 2012-03-21 Show GitHub Exploit DB Packet Storm
241228 7.5 危険 phpList - phpList の public_html/lists/admin における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2740 2012-09-7 16:35 2012-03-21 Show GitHub Exploit DB Packet Storm
241229 6.8 警告 Wishlist project - Drupal 用 Wishlist モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2069 2012-09-7 16:34 2012-03-21 Show GitHub Exploit DB Packet Storm
241230 6.8 警告 ownCloud - ownCloud におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4753 2012-09-7 16:32 2012-07-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266421 6.8 MEDIUM
Physics
google android Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism by accessing (1) an external tile from a syst… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3889 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266422 2.1 LOW
Physics
google android internal/telephony/SMSDispatcher.java in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows physically proximate attackers to by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3888 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266423 7.8 HIGH
Local
google android providers/settings/SettingsProvider.java in Android 7.0 before 2016-09-01 does not properly enforce the DISALLOW_CONFIG_VPN setting, which allows attackers to bypass an intended always-on VPN state v… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3887 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266424 6.8 MEDIUM
Physics
google android systemui/statusbar/phone/QuickStatusBarHeader.java in the System UI Tuner in Android 7.0 before 2016-09-01 does not prevent tuner changes on the lockscreen, which allows physically proximate attacker… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3886 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266425 7.8 HIGH
Local
google android debuggerd/debuggerd.cpp in Debuggerd in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 mishandles the interaction between PTRACE_ATTACH operations an… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3885 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266426 5.5 MEDIUM
Local
google android server/notification/NotificationManagerService.java in the Notification Manager Service in Android 6.x before 2016-09-01 and 7.0 before 2016-09-01 lacks uid checks, which allows attackers to bypass i… CWE-284
Improper Access Control
CVE-2016-3884 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266427 5.5 MEDIUM
Local
google android internal/telephony/SMSDispatcher.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 does not properly construct wa… CWE-284
Improper Access Control
CVE-2016-3883 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266428 5.5 MEDIUM
Local
google android The decoder_peek_si_internal function in vp9/vp9_dx_iface.c in libvpx in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3881 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266429 5.5 MEDIUM
Local
google android Multiple buffer overflows in rtsp/ASessionDescription.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2… CWE-284
Improper Access Control
CVE-2016-3880 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm
266430 5.5 MEDIUM
Local
google android arm-wt-22k/lib_src/eas_mdls.c in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-09-01 allows remote attackers to cause a denial of service (NULL … CWE-284
Improper Access Control
CVE-2016-3879 2024-11-21 11:50 2016-09-12 Show GitHub Exploit DB Packet Storm