Cxbsoft develops a focused line of web-facing utility applications centered on URL shortening and postal-management services, presenting a narrow but potentially high-impact attack surface. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and recur through SQL injection weaknesses, reflecting insufficient input sanitization in database-connected application logic. Defenders should prioritize this vendor's advisories where these products are internet-exposed; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cxbsoft over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-0527CRITICAL A vulnerability, which was classified as critical, has been found in CXBSoft Url-shorting up to 1.3.1. This issue affects some unknown processing of the file /admin/pages/update_go | Jan 15, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-0525CRITICAL A vulnerability classified as critical has been found in CXBSoft Url-shorting up to 1.3.1. This affects an unknown part of the file /pages/long_s_short.php of the component HTTP PO | Jan 15, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-0526CRITICAL A vulnerability classified as critical was found in CXBSoft Url-shorting up to 1.3.1. This vulnerability affects unknown code of the file /pages/short_to_long.php of the component | Jan 15, 2024 | 9.8 | 29 | NO | NO |
CVE-2024-0524CRITICAL A vulnerability was found in CXBSoft Url-shorting up to 1.3.1. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php. The manipu | Jan 15, 2024 | 9.8 | 29 | NO | NO |
CVE-2024-0530CRITICAL A vulnerability was found in CXBSoft Post-Office up to 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /apps/reg_go.php of the comp | Jan 15, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-0529CRITICAL A vulnerability has been found in CXBSoft Post-Office up to 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /apps/login_auth. | Jan 15, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-0528CRITICAL A vulnerability, which was classified as critical, was found in CXBSoft Post-Office 1.0. Affected is an unknown function of the file /admin/pages/update_go.php of the component HTT | Jan 15, 2024 | 9.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cxbsoft.
Media articles that mention a CVE ID that affects a product developed by Cxbsoft — matched by CVE ID, not by vendor name.