Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Bdtask

First CVE: Jun 22, 2020Active for: 6 yearsTotal CVEs: 35
17.0
VTI Score
Low

Bdtask is a provider of enterprise and healthcare management software, with a focused portfolio spanning inventory systems, hospital administration platforms, and clinical consultation applications. The vendor's vulnerability footprint concentrates on a narrow set of web-facing products and recurs through application-layer weakness classes including cross-site scripting, cross-site request forgery, improper access control, unrestricted file uploads, and authorization bypass, which are characteristic of web application development practices. These weakness classes collectively reflect common gaps in input validation, session management, and access enforcement that affect healthcare and administrative software where user-facing forms and file handling are core functionality. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
35
Total CVEs
More Total CVEs than 98% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
6.4
Avg CVSS Score
Higher Avg CVSS Score than 39% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Bdtask over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 22, 2020
6 years ago
Most Recent CVE
Mar 4, 2026
142 days ago

Products(14 total)

Top CVEs

Signals from CVEs in this vendor scope (35 CVEs).

35 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-28993CRITICAL
Multi Store Inventory Management System v1.0 allows attackers to perform an account takeover via a crafted POST request.
May 20, 20229.830NONO
CVE-2025-13238HIGH
A weakness has been identified in Bdtask Flight Booking Software 4. Affected by this vulnerability is an unknown functionality of the file /agent/profile/edit of the component Edit
Nov 16, 20258.828NONO
CVE-2026-1597HIGH
A vulnerability has been found in Bdtask SalesERP up to 20260116. This issue affects some unknown processing of the component Administrative Endpoint. Such manipulation of the argu
Jan 29, 20268.827NONO
CVE-2025-13177HIGH
A vulnerability was detected in Bdtask/CodeCanyon SalesERP up to 20250728. This affects an unknown part. The manipulation results in cross-site request forgery. The attack can be e
Nov 14, 20258.827NONO
CVE-2025-12288HIGH
A vulnerability was detected in Bdtask Pharmacy Management System up to 9.4. Affected is an unknown function of the file /user/edit_user/ of the component User Profile Handler. Per
Oct 27, 20258.827NONO
CVE-2025-12223HIGH
A vulnerability was detected in Bdtask Flight Booking Software up to 3.1. This affects an unknown part of the file /b2c/package-information of the component Package Information Mod
Oct 27, 20258.827NONO
CVE-2025-12222HIGH
A security vulnerability has been detected in Bdtask Flight Booking Software up to 3.1. Affected by this issue is some unknown functionality of the file /admin/transaction/deposit
Oct 27, 20258.827NONO
CVE-2019-25505HIGH
Tradebox 5.4 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting SQL code through the symbol parameter. Attacker
Mar 4, 20267.124NONO
CVE-2025-13239HIGH
A security vulnerability has been detected in Bdtask/CodeCanyon Isshue Multi Store eCommerce Shopping Cart Solution 5. Affected by this issue is some unknown functionality of the f
Nov 16, 20257.524NONO
CVE-2025-13185HIGH
A security flaw has been discovered in Bdtask/CodeCanyon News365 up to 7.0.3. This affects an unknown function of the file /admin/dashboard/profile. The manipulation of the argumen
Nov 14, 20257.224NONO
View all 35 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products35 CVEs
63%
31%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network35 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low35 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None14 (40.0%)
Unknown0 (0.0%)
Required21 (60.0%)
Privileges Required
Low14 (40.0%)
High6 (17.1%)
None15 (42.9%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (35 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Bdtask.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Bdtask — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Bdtask's Products

View all 3 CNAs →

Top CWEs