Ada
Ada is a modestly represented vendor with a narrow product footprint centered on imgsvr and related tooling, achieving prominence despite limited disclosure volume. The recurring weakness classes involve server-side request forgery and misconfiguration-oriented flaws that arise in network-facing components; vulnerabilities associated with this vendor carry a high tendency toward public exploit availability. Live severity, exploitation, and exposure counts are shown alongside this summary.
Trends Over Time
The number and severity of CVEs published that impact products developed by Ada over time
Products(2 total)
Top CVEs
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3714MEDIUM Directory traversal vulnerability in Ada Image Server (ImgSvr) 0.6.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter to the default URI | Jul 11, 2007 | 5.0 | 25 | NO | YES |
CVE-2006-3546MEDIUM Patrice Freydiere ImgSvr (aka ADA Image Server) allows remote attackers to cause a denial of service (daemon crash) via a long HTTP POST request. NOTE: this might be the same issu | Jul 13, 2006 | 5.0 | 23 | NO | YES |
CVE-2004-1887MEDIUM Ada Image Server (ImgSvr) 0.4 allows remote attackers to view directories or download files via an HTTP request with a trailing %00 (null). | Dec 31, 2004 | 5.0 | 23 | NO | YES |
CVE-2004-2463HIGH Buffer overflow in ADA Image Server (ImgSvr) 0.4 allows remote attackers to cause a denial of service (web server crash) or execute arbitrary code via a long GET request. | Dec 31, 2004 | 7.5 | 23 | NO | NO |
CVE-2004-2464MEDIUM Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to read arbitrary files or list directories via hex-encoded "..//" sequences ("%2e%2e%2f% | Dec 31, 2004 | 5.0 | 23 | NO | YES |
CVE-2024-9410MEDIUM Ada.cx's Sentry configuration allowed for blind server-side request forgeries (SSRF) through the use of a data scraping endpoint. | Oct 4, 2024 | 5.3 | 17 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this vendor scope (6 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID that affects a product developed by Ada.
Media Mentions
Media articles that mention a CVE ID that affects a product developed by Ada — matched by CVE ID, not by vendor name.