Claromentis produces an enterprise intranet and employee engagement platform, where its vulnerability exposure centers on the core product and recurs through cross-site scripting weaknesses typical of web-facing content-management and communication systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Claromentis over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-15903MEDIUM The Discuss v1.2.1 module in Claromentis 8.2.2 is vulnerable to stored Cross Site Scripting (XSS). An authenticated attacker will be able to place malicious JavaScript in the discu | Oct 8, 2018 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Claromentis.
Media articles that mention a CVE ID that affects a product developed by Claromentis — matched by CVE ID, not by vendor name.