Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251481 10 危険 Goforandroid - Android 用 GO Note Widget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1405 2012-03-9 11:23 2011-03-7 Show GitHub Exploit DB Packet Storm
251482 10 危険 Goforandroid - Android 用 GO WeiboWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1398 2012-03-9 11:22 2012-03-7 Show GitHub Exploit DB Packet Storm
251483 10 危険 Goforandroid - Android 用 GO QQWeiboWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1397 2012-03-9 11:16 2012-03-7 Show GitHub Exploit DB Packet Storm
251484 10 危険 Goforandroid - Android 用 GO FBWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1396 2012-03-9 11:15 2012-03-7 Show GitHub Exploit DB Packet Storm
251485 10 危険 Goforandroid - Android 用 GO TwiWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1395 2012-03-9 11:10 2012-03-7 Show GitHub Exploit DB Packet Storm
251486 10 危険 Goforandroid - Android 用 GO Email Widget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1394 2012-03-9 11:08 2012-03-7 Show GitHub Exploit DB Packet Storm
251487 10 危険 Goforandroid - Android 用 GO SMS Pro アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1393 2012-03-9 11:06 2012-03-7 Show GitHub Exploit DB Packet Storm
251488 10 危険 MoboTap - Android 用 Dolphin Browser Mini アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1404 2012-03-8 16:30 2012-03-7 Show GitHub Exploit DB Packet Storm
251489 10 危険 MoboTap - Android 用 Dolphin Browser CN アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1403 2012-03-8 16:29 2012-03-7 Show GitHub Exploit DB Packet Storm
251490 10 危険 MoboTap - Android 用 Dolphin Browser HD アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1392 2012-03-8 16:29 2012-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247621 9.8 CRITICAL
Network
netiq
microfocus
edirectory NetIQ eDirectory before 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services. CWE-287
Improper Authentication
CVE-2017-9285 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247622 7.5 HIGH
Network
netiq identity_manager Some NetIQ Identity Manager Applications before Identity Manager 4.5.6.1 included the session token in GET URLs, potentially allowing exposure of user sessions to untrusted third parties via proxies,… CWE-200
Information Exposure
CVE-2017-9280 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247623 7.2 HIGH
Network
netiq identity_manager NetIQ Identity Manager before 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user admini… CWE-20
 Improper Input Validation 
CVE-2017-9279 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247624 9.8 CRITICAL
Network
netiq identity_manager The NetIQ Identity Manager Oracle EBS driver before 4.0.2.0 sent EBS logs containing the driver authentication password, potentially disclosing this to attackers able to read the EBS tables. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-9278 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247625 7.5 HIGH
Network
novell edirectory The LDAP backend in Novell eDirectory before 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA. NVD-CWE-noinfo
CVE-2017-9277 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247626 6.1 MEDIUM
Network
netiq access_manager Novell Access Manager iManager before 4.3.3 did not validate parameters so that cross site scripting content could be reflected back into the result page using the "a" parameter. CWE-79
Cross-site Scripting
CVE-2017-9276 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247627 7.5 HIGH
Network
novell edirectory In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations. NVD-CWE-noinfo
CVE-2017-9267 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247628 8.8 HIGH
Network
opensuse leap The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrad… NVD-CWE-noinfo
CVE-2017-9286 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm
247629 7.8 HIGH
Local
opensuse obs-service-source_validator A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs. CWE-78
OS Command 
CVE-2017-9274 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm
247630 3.3 LOW
Local
opensuse
fedoraproject
zypper
fedora
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-9271 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm