Esoft operates a narrowly focused UTM and gateway security product line, exemplified by the InstaGate EX2 platform, which represents a modestly represented footprint in the vulnerability landscape. Observed disclosures for this vendor cluster around the gateway appliance and its handling of security-relevant input processing, reflected in the classification patterns available. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Esoft over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3786HIGH Cross-site request forgery (CSRF) vulnerability on the eSoft InstaGate EX2 UTM device before firmware 3.1.20070615 allows remote attackers to perform privileged actions as administ | Jul 15, 2007 | 9.3 | 26 | NO | NO |
CVE-2007-3788HIGH The eSoft InstaGate EX2 UTM device stores the admin password within the settings HTML document, which might allow context-dependent attackers to obtain sensitive information by rea | Jul 15, 2007 | 7.6 | 20 | NO | NO |
CVE-2007-3787HIGH The eSoft InstaGate EX2 UTM device does not require entry of the old password when changing the admin password, which might allow remote attackers to gain privileges by conducting | Jul 15, 2007 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Esoft.
Media articles that mention a CVE ID that affects a product developed by Esoft — matched by CVE ID, not by vendor name.