Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Archerydms

First CVE: Sep 13, 2022Active for: 4 yearsTotal CVEs: 15
38.0
VTI Score
Medium

Archerydms develops the Archery document management system, a narrowly scoped but notably prominent offering in its segment. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and recur through SQL injection and hard-coded credential weaknesses that are characteristic of legacy credential and data-handling logic. Defenders should prioritize patches for this vendor's disclosures given the severity profile and the system's typical role in managing sensitive documents; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
15
Total CVEs
More Total CVEs than 94% of tracked vendors
7.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
7.9
Avg CVSS Score
Higher Avg CVSS Score than 77% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Archerydms over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 13, 2022
3 years ago
Most Recent CVE
Nov 16, 2023
985 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (15 CVEs).

15 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-38542CRITICAL
Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the kill_session interface. The project has released an update, plea
Sep 13, 20229.832NONO
CVE-2022-38541CRITICAL
Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_time parameters in the my2sql interface.
Sep 13, 20229.831NONO
CVE-2022-38540CRITICAL
Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the create_kill_session interface.
Sep 13, 20229.831NONO
CVE-2022-38539CRITICAL
Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/apply.
Sep 13, 20229.831NONO
CVE-2022-38537CRITICAL
Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, start_time, and stop_time parameters in the binlog2sql inter
Sep 13, 20229.831NONO
CVE-2022-38538CRITICAL
Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the report module.
Sep 13, 20229.830NONO
CVE-2023-30558MEDIUM
Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to query the connected databases. User
Apr 19, 20236.523NONO
CVE-2023-30557MEDIUM
Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to query the connected databases. Affe
Apr 19, 20236.522NONO
CVE-2023-30556MEDIUM
Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to query the connected databases. Affe
Apr 19, 20236.522NONO
CVE-2023-30555MEDIUM
Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to query the connected databases.Affec
Apr 19, 20236.522NONO
View all 15 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products15 CVEs
53%
40%
Severity distribution among all CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network15 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None15 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low8 (53.3%)
High0 (0.0%)
None7 (46.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (15 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Archerydms.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Archerydms — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Archerydms's Products

View all 2 CNAs →

Top CWEs