Desiderata Software maintains a focused product line centered on the Blazix web server, a niche component in embedded and specialized deployment contexts. The vendor's disclosure pattern reflects the inherent complexity of web-server implementation and request-handling logic. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Desiderata Software over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-1451MEDIUM Blazix before 1.2.2 allows remote attackers to read source code of JSP scripts or list restricted web directories via an HTTP request that ends in a (1) "+" or (2) "\" (backslash) | Aug 24, 2002 | 5.0 | 31 | NO | YES |
CVE-2006-1483MEDIUM Blazix Web Server before 1.2.6, when running on Windows, allows remote attackers to obtain the source code of JSP files via (1) . (dot), (2) space, and (3) slash characters in the | Mar 29, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Desiderata Software.
Media articles that mention a CVE ID that affects a product developed by Desiderata Software — matched by CVE ID, not by vendor name.