Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Iwcnetwork

First CVE: Dec 27, 2017Active for: 9 yearsTotal CVEs: 8

Iwcnetwork develops employee management and biometric shift-scheduling software that serves as a personnel and access-control touchpoint for many organizations. Its vulnerability profile centers on its core shift-management product and recurs through web application weakness classes including cross-site scripting, cross-site request forgery, and path-traversal flaws that reflect input-handling and access-control challenges typical of web-facing administrative platforms. The vendor's disclosures skew toward serious outcomes and frequently acquire public exploit code, making timely patching of exposed instances a priority for defenders. Current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
4.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Iwcnetwork over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 27, 2017
8 years ago
Most Recent CVE
Dec 30, 2017
3,128 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-17876HIGH
Biometric Shift Employee Management System 3.0 allows remote attackers to bypass intended file-read restrictions via a user=download request with a pathname in the path parameter.
Dec 27, 20177.536NOYES
CVE-2017-17992CRITICAL
Biometric Shift Employee Management System allows Arbitrary File Download via directory traversal sequences in the index.php form_file_name parameter in a download_form action.
Dec 30, 20179.830NONO
CVE-2017-17990HIGH
Biometric Shift Employee Management System has CSRF via index.php in an edit_holiday action.
Dec 30, 20178.827NONO
CVE-2017-17995MEDIUM
Biometric Shift Employee Management System has XSS via the Last_Name parameter in an index.php?user=ajax request.
Dec 30, 20175.419NONO
CVE-2017-17994MEDIUM
Biometric Shift Employee Management System has XSS via the criteria parameter in an index.php?user=competency_criteria request.
Dec 30, 20175.419NONO
CVE-2017-17993MEDIUM
Biometric Shift Employee Management System has XSS via the amount parameter in an index.php?user=addition_deduction request.
Dec 30, 20175.419NONO
CVE-2017-17991MEDIUM
Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.
Dec 30, 20175.419NONO
CVE-2017-17989MEDIUM
Biometric Shift Employee Management System has XSS via the index.php holiday_name parameter in an edit_holiday action.
Dec 30, 20175.419NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
63%
25%
13%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (25.0%)
Unknown0 (0.0%)
Required6 (75.0%)
Privileges Required
Low5 (62.5%)
High0 (0.0%)
None3 (37.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
12.5% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Iwcnetwork.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Iwcnetwork — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Iwcnetwork's Products

View all 1 CNAs →

Top CWEs