Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Futomi

First CVE: Jan 2, 2009Active for: 18 yearsTotal CVEs: 8

Futomi develops a focused portfolio of CGI-based web utilities and analysis tools, including the widely used mp_form_mail_cgi, access_analyzer_cgi, and cgi_cafe_access_analyzer_cgi, which sit in request-handling positions where input-validation flaws compound exposure. Vulnerabilities affecting this vendor skew toward serious outcomes and recur through characteristic web-application weakness classes: cross-site scripting, code injection, path traversal, and authentication bypass, reflecting the parsing and access-control demands of CGI scripts exposed to untrusted input. Defenders should prioritize inventory and patching of these utilities given their prevalence in legacy web deployments; live severity and current vulnerability counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
0.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
6.2
Avg CVSS Score
Higher Avg CVSS Score than 35% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Futomi over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 2, 2009
17 years ago
Most Recent CVE
Feb 8, 2018
3,088 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2018-0514CRITICAL
MP Form Mail CGI eCommerce Edition Ver 2.0.13 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
Feb 8, 20189.830NONO
CVE-2015-0898HIGH
futomi CGI Cafe MP Form Mail CGI eCommerce before 2.0.12 on Windows allows remote attackers to execute arbitrary Perl code via unspecified vectors.
Mar 21, 20157.520NONO
CVE-2009-1206HIGH
Unspecified vulnerability in futomi's CGI Cafe Access Analyzer CGI Professional Version 4.11.5 and earlier allows remote attackers to gain administrative privileges via unknown vec
Apr 1, 20097.519NONO
CVE-2009-0962HIGH
Unspecified vulnerability in Futomi's CGI Cafe MP Form Mail CGI eCommerce 1.3.0 and earlier, and CGI Professional 3.2.2 and earlier, allows remote attackers to gain administrative
Mar 19, 20097.519NONO
CVE-2010-2366MEDIUM
Cross-site scripting (XSS) vulnerability in futomi CGI Cafe Access Analyzer CGI Professional, and Standard 4.0.2 and earlier, allows remote attackers to inject arbitrary web script
Sep 13, 20104.316NONO
CVE-2008-5809MEDIUM
futomi CGI Cafe Access Analyzer CGI Standard 4.0.1 and earlier and Access Analyzer CGI Professional 4.11.3 and earlier use a predictable session id, which makes it easier for remot
Jan 2, 20095.816NONO
CVE-2009-0971MEDIUM
Cross-site scripting (XSS) vulnerability in futomi's CGI Cafe Access Analyzer CGI Standard Version 3.8.1 and earlier allows remote attackers to inject arbitrary web script or HTML
Mar 19, 20094.314NONO
CVE-2016-1212LOW
Directory traversal vulnerability in futomi MP Form Mail CGI Professional Edition 3.2.3 and earlier allows remote authenticated administrators to read arbitrary files via unspecifi
Jun 5, 20162.712NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
13%
38%
38%
13%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network2 (25.0%)
Unknown6 (75.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (25.0%)
High0 (0.0%)
Unknown6 (75.0%)
User Interaction
None2 (25.0%)
Unknown6 (75.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High1 (12.5%)
None1 (12.5%)
Unknown6 (75.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Futomi.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Futomi — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Futomi's Products

View all 2 CNAs →

Top CWEs