Aggsoft develops a narrow line of web server products that have surfaced with recurring web-application input-handling weaknesses, primarily path-traversal and cross-site scripting flaws. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aggsoft over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-32962MEDIUM The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to cross-site scripting, which may allow an attacker to remotely execute arbitrary code. | May 24, 2022 | 6.1 | 21 | NO | NO |
CVE-2021-32964MEDIUM The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to a path traversal attack, which may allow an attacker to read arbitrary files from the file system. | May 24, 2022 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aggsoft.
Media articles that mention a CVE ID that affects a product developed by Aggsoft — matched by CVE ID, not by vendor name.