Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Italtel

First CVE: Jan 27, 2023Active for: 3 yearsTotal CVEs: 15
25.8
VTI Score
Low

Italtel manufactures telecommunications and network infrastructure products including the Embrace platform, I-MCS NFV middleware, and NetMatch switching appliances, which serve telecom operators and enterprise networks. The vendor's vulnerability profile is characterized by serious-severity outcomes across its portfolio and recurs through web-application and access-control weaknesses—cross-site scripting, improper access control, path traversal, and cleartext transmission of sensitive data—that are typical of legacy network management interfaces and provisioning systems. Current severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
15
Total CVEs
More Total CVEs than 94% of tracked vendors
1.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
6.9
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Italtel over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 27, 2023
3 years ago
Most Recent CVE
Mar 13, 2025
498 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (15 CVEs).

15 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-39811CRITICAL
Italtel NetMatch-S CI 5.2.0-20211008 has incorrect Access Control under NMSCI-WebGui/advancedsettings.jsp and NMSCIWebGui/SaveFileUploader. By not verifying permissions for access
Jan 27, 20239.128NONO
CVE-2024-28805CRITICAL
An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. There is Incorrect Access Control.
Jul 29, 20249.125NONO
CVE-2022-39812HIGH
Italtel NetMatch-S CI 5.2.0-20211008 allows Absolute Path Traversal under NMSCI-WebGui/SaveFileUploader. An unauthenticated user can upload files to an arbitrary path. An attacker
Jan 27, 20237.525NONO
CVE-2024-31842HIGH
An issue was discovered in Italtel Embrace 1.6.4. The web application inserts the access token of an authenticated user inside GET requests. The query string for the URL could be s
Aug 20, 20248.824NONO
CVE-2024-28804HIGH
An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. Stored Cross-site scripting (XSS) can occur via POST.
Jul 29, 20247.121NONO
CVE-2022-39813MEDIUM
Italtel NetMatch-S CI 5.2.0-20211008 allows Multiple Reflected/Stored XSS issues under NMSCIWebGui/j_security_check via the j_username parameter, or NMSCIWebGui/actloglineview.jsp
Jan 27, 20236.121NONO
CVE-2024-31846HIGH
An issue was discovered in Italtel Embrace 1.6.4. The web application does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Apr 19, 20247.520NONO
CVE-2024-31841HIGH
An issue was discovered in Italtel Embrace 1.6.4. The web server fails to sanitize input data, allowing remote unauthenticated attackers to read arbitrary files on the filesystem.
Apr 19, 20247.520NONO
CVE-2024-28806HIGH
An issue was discovered in Italtel i-MCS NFV 12.1.0-20211215. Remote unauthenticated attackers can upload files at an arbitrary path.
Jul 29, 20247.519NONO
CVE-2024-31840MEDIUM
An issue was discovered in Italtel Embrace 1.6.4. The web application inserts cleartext passwords in the HTML source code. An authenticated user is able to edit the configuration o
May 21, 20246.519NONO
View all 15 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products15 CVEs
47%
40%
13%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network14 (93.3%)
Unknown0 (0.0%)
Physical1 (6.7%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None10 (66.7%)
Unknown0 (0.0%)
Required5 (33.3%)
Privileges Required
Low2 (13.3%)
High0 (0.0%)
None13 (86.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (15 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Italtel.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Italtel — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Italtel's Products

View all 1 CNAs →

Top CWEs