Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Gfi

First CVE: Sep 24, 2002Active for: 24 yearsTotal CVEs: 51
35.9
VTI Score
Medium

GFI develops a focused suite of messaging, archival, and IT infrastructure management products, including Mail Essentials, Archiver, Helpdesk, and Kerio-branded connectivity and firewall appliances, that serve small to medium-sized business environments. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the internet-exposed and authentication-critical nature of messaging gateways and remote-access appliances. The exposure recurs across its product portfolio through weakness classes centered on web-application input handling—including cross-site scripting and code injection—alongside unsafe deserialization and missing authentication controls, patterns typical of business-productivity software with web and API interfaces. Defenders should prioritize patches for internet-reachable instances of these products and restrict administrative access; live severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
51
Total CVEs
More Total CVEs than 98% of tracked vendors
0.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 45% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Gfi over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 24, 2002
23 years ago
Most Recent CVE
Apr 20, 2026
96 days ago

Products(10 total)

Top CVEs

Signals from CVEs in this vendor scope (51 CVEs).

51 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-52875HIGH
An issue was discovered in GFI Kerio Control 9.2.5 through 9.4.5. The dest GET parameter passed to the /nonauth/addCertException.cs and /nonauth/guestConfirm.cs and /nonauth/expira
Jan 31, 20258.856NOYES
CVE-2021-29281CRITICAL
File upload vulnerability in GFI Mail Archiver versions up to and including 15.1 via insecure implementation of Telerik Web UI plugin which is affected by CVE-2014-2217, and CVE-20
Jul 7, 20229.831NONO
CVE-2025-34069CRITICAL
An authentication bypass vulnerability exists in GFI Kerio Control 9.4.5 due to insecure default proxy configuration and weak access control in the GFIAgent service. The non-transp
Jul 2, 20259.830NONO
CVE-2026-2039CRITICAL
GFI Archiver MArc.Store Missing Authorization Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of
Feb 20, 20269.829NONO
CVE-2026-2038CRITICAL
GFI Archiver MArc.Core Missing Authorization Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of G
Feb 20, 20269.829NONO
CVE-2025-34071CRITICAL
A remote code execution vulnerability in GFI Kerio Control 9.4.5 allows attackers with administrative access to upload and execute arbitrary code through the firmware upgrade featu
Jul 2, 20259.828NONO
CVE-2025-34070CRITICAL
A missing authentication vulnerability in the GFIAgent component of GFI Kerio Control 9.4.5 allows unauthenticated remote attackers to perform privileged operations. The GFIAgent s
Jul 2, 20259.828NONO
CVE-2025-35940HIGH
The ArchiverSpaApi ASP.NET application uses a hard-coded JWT signing key. An unauthenticated remote attacker can generate and use a verifiable JWT token to access protected Archiv
Jun 10, 20258.128NONO
CVE-2024-11948CRITICAL
GFI Archiver Telerik Web UI Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GFI Archiver. Aut
Dec 12, 20249.828NONO
CVE-2026-2037HIGH
GFI Archiver MArc.Core Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected insta
Feb 20, 20268.827NONO
View all 51 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products51 CVEs
61%
25%
14%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (3.9%)
Network44 (86.3%)
Unknown5 (9.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low44 (86.3%)
High2 (3.9%)
Unknown5 (9.8%)
User Interaction
None19 (37.3%)
Unknown5 (9.8%)
Required27 (52.9%)
Privileges Required
Low33 (64.7%)
High2 (3.9%)
None11 (21.6%)
Unknown5 (9.8%)

Exploit Exposure

Signals from CVEs in this vendor scope (51 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
2.0% of CVEs· 95th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Gfi.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Gfi — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Gfi's Products

View all 5 CNAs →

Top CWEs