Mendelson develops specialized file-transfer software, notably the OFTP2 (Odette File Transfer Protocol 2) implementation, which facilitates secure document exchange in supply-chain and logistics contexts. The observed vulnerability surface centers on path-traversal weaknesses in directory handling, a recurring flaw class in file-transfer and parsing logic. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mendelson over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-27906MEDIUM Mendelson OFTP2 before 1.1 b43 is affected by directory traversal. To access the vulnerable code path, the attacker has to know one of the configured Odette IDs of the OFTP2 server | Mar 25, 2022 | 5.9 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mendelson.
Media articles that mention a CVE ID that affects a product developed by Mendelson — matched by CVE ID, not by vendor name.