Envivosoft has a narrow vulnerability footprint centered on its Envivo CMS product, a content-management system that presents a web-application attack surface. The durable signal reflects the platform's role in content delivery and management; detailed severity and exploitation metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Envivosoft over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-1413HIGH Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain privileges via the (1) username or (2) password parameters to | May 3, 2005 | 7.5 | 30 | NO | YES |
CVE-2007-3783HIGH SQL injection vulnerability in default.asp in enVivo!CMS allows remote attackers to execute arbitrary SQL commands via the ID parameter in an article action. NOTE: this is probabl | Jul 15, 2007 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Envivosoft.
Media articles that mention a CVE ID that affects a product developed by Envivosoft — matched by CVE ID, not by vendor name.