Lionmax Software maintains a narrow product line centered on file-sharing and real-time communication applications, including www File Share Pro and Chat Anywhere, where its vulnerability disclosures cluster around authentication and access-control issues. The vendor's vulnerability profile is marked by a recurring tendency toward public exploit code availability, reflecting the appeal of these consumer-facing collaborative tools to tooling development. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lionmax Software over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-0061HIGH WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or back | Feb 17, 2004 | 7.5 | 24 | NO | NO |
CVE-2005-0522MEDIUM Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which allows local users to gain privileges. | May 2, 2005 | 4.6 | 21 | NO | YES |
CVE-2004-2724HIGH LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) follow | Dec 31, 2004 | 7.1 | 19 | NO | NO |
CVE-2004-0059MEDIUM Directory traversal vulnerability in upload capability of WWW File Share Pro 2.42 and earlier allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in the | Feb 17, 2004 | 5.0 | 19 | NO | NO |
CVE-2004-1802MEDIUM Chat Anywhere 2.72 and earlier allows remote attackers to hide their IP address by using %00 before the nickname, which causes the IP address to be displayed as $IP$ on the adminis | Dec 31, 2004 | 5.0 | 15 | NO | NO |
CVE-2004-0741MEDIUM LionMax Software WWW File Share Pro 2.60 allows remote attackers to cause a denial of service (crash or hang) via a long URL, possibly triggering a buffer overflow. | Jul 27, 2004 | 5.0 | 15 | NO | NO |
CVE-2004-0060MEDIUM WWW File Share Pro 2.42 and earlier allows remote attackers to cause a denial of service (crash) via a large POST request. | Feb 17, 2004 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lionmax Software.
Media articles that mention a CVE ID that affects a product developed by Lionmax Software — matched by CVE ID, not by vendor name.