Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241861 9.3 危険 サン・マイクロシステムズ
disa
- Solaris x86 プラットフォームの U.S. DISA SRR スクリプトにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4211 2012-06-26 16:18 2009-12-4 Show GitHub Exploit DB Packet Storm
241862 7.5 危険 cmsnx - Million Dollar Text Links の admin.link.modify.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4206 2012-06-26 16:18 2009-12-4 Show GitHub Exploit DB Packet Storm
241863 7.5 危険 Arab Portal - Arab Portal の admin/aclass/admin_func.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4203 2012-06-26 16:18 2009-12-4 Show GitHub Exploit DB Packet Storm
241864 9.3 危険 assistanttools - Mp3 Tag Assistant Professional におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4201 2012-06-26 16:18 2009-12-4 Show GitHub Exploit DB Packet Storm
241865 6.5 警告 cupidsystems - MyMiniBill の my_orders.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4198 2012-06-26 16:18 2009-12-4 Show GitHub Exploit DB Packet Storm
241866 9.3 危険 アップル
マイクロソフト
- Apple Safari におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-4186 2012-06-26 16:18 2009-12-3 Show GitHub Exploit DB Packet Storm
241867 5 警告 korn19
CutePHP
- CutePHP CuteNews および UTF-8 CuteNews における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-4175 2012-06-26 16:18 2009-12-2 Show GitHub Exploit DB Packet Storm
241868 6 警告 korn19
CutePHP
- CutePHP CuteNews の editnews モジュールにおける管理モデレーションを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4174 2012-06-26 16:18 2009-12-2 Show GitHub Exploit DB Packet Storm
241869 6.8 警告 korn19
CutePHP
- CutePHP CuteNews および UTF-8 CuteNews におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4173 2012-06-26 16:18 2009-12-2 Show GitHub Exploit DB Packet Storm
241870 2.6 注意 korn19
CutePHP
- CutePHP CuteNews および UTF-8 CuteNews の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4172 2012-06-26 16:18 2009-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266701 5.5 MEDIUM
Local
google android The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024. CWE-20
 Improper Input Validation 
CVE-2016-2454 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266702 7.0 HIGH
Local
google android_one The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27549705. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2453 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266703 7.8 HIGH
Local
google android codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2452 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266704 7.8 HIGH
Local
google android codecs/on2/dec/SoftVPX.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate VPX output buffer sizes, w… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2451 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266705 7.8 HIGH
Local
google android codecs/on2/enc/SoftVPXEncoder.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate OMX buffer sizes, w… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2450 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266706 7.8 HIGH
Local
google android services/camera/libcameraservice/device3/Camera3Device.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate template IDs… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2449 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266707 7.8 HIGH
Local
google android media/libmediaplayerservice/nuplayer/NuPlayerStreamListener.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly validat… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2448 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266708 7.0 HIGH
Local
google android The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27441354. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2446 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266709 7.0 HIGH
Local
google android The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27253079. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2445 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
266710 7.0 HIGH
Local
google android The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27208332. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2444 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm