NTT Data's vulnerability footprint centers on a focused set of enterprise software products, including web applications and the Terasoluna framework family, with exposure clustering around certificate validation, input handling, and web-presentation layer flaws. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nttdata over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-43484HIGH TERASOLUNA Global Framework 1.0.0 (Public review version) and TERASOLUNA Server Framework for Java (Rich) 2.0.0.2 to 2.0.5.1 are vulnerable to a ClassLoader manipulation vulnerabil | Dec 5, 2022 | 7.8 | 26 | NO | NO |
CVE-2020-5523HIGH Android App 'MyPallete' and some of the Android banking applications based on 'MyPallete' do not verify X.509 certificates from servers, and also do not properly validate certifica | Jan 28, 2020 | 7.4 | 23 | NO | NO |
CVE-2015-7786MEDIUM Cross-site scripting (XSS) vulnerability in the NTT DATA Smart Sourcing JavaScript module 2003-11-26 through 2013-07-09 for Web Analytics Service allows remote attackers to inject | Dec 29, 2015 | 6.1 | 17 | NO | NO |
NTT Data TERASOLUNA Server Framework for Java(WEB) 2.0.0.1 through 2.0.6.1, as used in Fujitsu Interstage Business Application Server and other products, allows remote attackers to | Jun 19, 2016 | 3.7 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nttdata.
Media articles that mention a CVE ID that affects a product developed by Nttdata — matched by CVE ID, not by vendor name.