Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251491 10 危険 Shanghai Truecolor Multimedia - Android 用 QianXun YingShi アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1402 2012-03-8 16:18 2011-03-7 Show GitHub Exploit DB Packet Storm
251492 10 危険 IntSig Information - Android 用 CamScanner アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1401 2012-03-8 16:16 2012-03-7 Show GitHub Exploit DB Packet Storm
251493 10 危険 uplusbox - Android 用 U+Box 2.0 Pad アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1400 2012-03-8 16:14 2012-03-7 Show GitHub Exploit DB Packet Storm
251494 10 危険 uplusbox - Android 用 U+Box 2.0 アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1399 2012-03-8 16:13 2012-03-7 Show GitHub Exploit DB Packet Storm
251495 10 危険 Innovation Technology - Android 用 mOffice - Outlook sync アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1391 2012-03-8 16:10 2012-03-7 Show GitHub Exploit DB Packet Storm
251496 10 危険 GoMiso - Android 用 Miso アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1390 2012-03-8 16:09 2012-03-7 Show GitHub Exploit DB Packet Storm
251497 10 危険 fanfan - Android 用 Di Long Weibo アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1389 2012-03-8 15:03 2012-03-7 Show GitHub Exploit DB Packet Storm
251498 10 危険 xixun - Android 用 XiXunTianTian アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1388 2012-03-8 14:56 2012-03-7 Show GitHub Exploit DB Packet Storm
251499 10 危険 UANGEL - Android 用 RealTalk アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1387 2012-03-8 14:42 2012-03-7 Show GitHub Exploit DB Packet Storm
251500 10 危険 YouMail - Android 用 YouMail Visual Voicemail Plus アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1386 2012-03-8 14:30 2012-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247621 9.8 CRITICAL
Network
netiq
microfocus
edirectory NetIQ eDirectory before 9.0 SP4 did not enforce login restrictions when "ebaclient" was used, allowing unpermitted access to eDirectory services. CWE-287
Improper Authentication
CVE-2017-9285 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247622 7.5 HIGH
Network
netiq identity_manager Some NetIQ Identity Manager Applications before Identity Manager 4.5.6.1 included the session token in GET URLs, potentially allowing exposure of user sessions to untrusted third parties via proxies,… CWE-200
Information Exposure
CVE-2017-9280 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247623 7.2 HIGH
Network
netiq identity_manager NetIQ Identity Manager before 4.5.6.1 allowed uploading files with double extensions or non-image content in the Themes handling of the User Application Administration, allowing malicious user admini… CWE-20
 Improper Input Validation 
CVE-2017-9279 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247624 9.8 CRITICAL
Network
netiq identity_manager The NetIQ Identity Manager Oracle EBS driver before 4.0.2.0 sent EBS logs containing the driver authentication password, potentially disclosing this to attackers able to read the EBS tables. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-9278 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247625 7.5 HIGH
Network
novell edirectory The LDAP backend in Novell eDirectory before 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA. NVD-CWE-noinfo
CVE-2017-9277 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247626 6.1 MEDIUM
Network
netiq access_manager Novell Access Manager iManager before 4.3.3 did not validate parameters so that cross site scripting content could be reflected back into the result page using the "a" parameter. CWE-79
Cross-site Scripting
CVE-2017-9276 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247627 7.5 HIGH
Network
novell edirectory In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations. NVD-CWE-noinfo
CVE-2017-9267 2024-11-21 12:35 2018-03-3 Show GitHub Exploit DB Packet Storm
247628 8.8 HIGH
Network
opensuse leap The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrad… NVD-CWE-noinfo
CVE-2017-9286 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm
247629 7.8 HIGH
Local
opensuse obs-service-source_validator A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs. CWE-78
OS Command 
CVE-2017-9274 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm
247630 3.3 LOW
Local
opensuse
fedoraproject
zypper
fedora
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-9271 2024-11-21 12:35 2018-03-2 Show GitHub Exploit DB Packet Storm