Exactsoftware develops enterprise resource planning and business management software, with a focused product portfolio centered on its Exact Synergy platform. The observed vulnerability pattern reflects application-layer file-handling controls, specifically unrestricted file uploads that can introduce dangerous file types into the system. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Exactsoftware over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-45338HIGH An arbitrary file upload vulnerability in the profile picture upload function of Exact Synergy Enterprise 267 before 267SP13 and Exact Synergy Enterprise 500 before 500SP6 allows a | Dec 15, 2022 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Exactsoftware.
Media articles that mention a CVE ID that affects a product developed by Exactsoftware — matched by CVE ID, not by vendor name.