Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

4cstrategies

First CVE: Aug 5, 2025Active for: 1 yearTotal CVEs: 7

4cstrategies develops Exonaut, a narrowly scoped product that has surfaced vulnerabilities skewing toward critical severity across a recurring pattern of access-control, information-disclosure, and path-traversal weaknesses typical of web applications with insufficient input validation and permission boundaries. These weakness classes—including improper access control, path traversal, and sensitive data exposure in error messages—reflect common risks in the application's handling of user input and file-system operations. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
7.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by 4cstrategies over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 5, 2025
11 months ago
Most Recent CVE
Aug 7, 2025
354 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-46658CRITICAL
An issue was discovered in ExonautWeb in 4C Strategies Exonaut 21.6. There are verbose error messages.
Aug 5, 20259.833NONO
CVE-2024-55401MEDIUM
An issue in 4C Strategies Exonaut before v22.4 allows attackers to execute a directory traversal.
Aug 7, 20256.525NONO
CVE-2025-46659HIGH
An issue was discovered in ExonautWeb in 4C Strategies Exonaut 21.6. Information disclosure can occur via an external HTTPS request.
Aug 6, 20257.525NONO
CVE-2024-55399MEDIUM
4C Strategies Exonaut before v21.6.2.1-1 was discovered to contain a Server-Side Request Forgery (SSRF).
Aug 6, 20256.524NONO
CVE-2024-55398MEDIUM
4C Strategies Exonaut before v22.4 was discovered to contain insecure permissions.
Aug 6, 20256.524NONO
CVE-2024-55402MEDIUM
4C Strategies Exonaut before v22.4 was discovered to contain an access control issue.
Aug 6, 20255.321NONO
CVE-2025-46660MEDIUM
An issue was discovered in 4C Strategies Exonaut 21.6. Passwords, stored in the database, are hashed without a salt.
Aug 6, 20255.319NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
71%
14%
14%
Severity distribution among all CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network7 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None7 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by 4cstrategies.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by 4cstrategies — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For 4cstrategies's Products

View all 1 CNAs →

Top CWEs