Elcom develops a content management system product that has surfaced vulnerabilities centered on SQL injection—a foundational input-handling weakness in database-driven applications. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Elcom over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-12946HIGH Elcom CMS before 10.7 has SQL Injection via EventSearchByState.aspx and EventSearchAdv.aspx. | Jul 19, 2019 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Elcom.
Media articles that mention a CVE ID that affects a product developed by Elcom — matched by CVE ID, not by vendor name.