Moj maintains a narrow portfolio of application and document-processing software, including applicant management and digital signature capabilities, with a modest vulnerability footprint concentrated around input and entity-handling issues. The recurring weakness classes—untrusted search-path resolution and improper XML external entity restriction—reflect risks inherent to file-system interaction and structured-document parsing in desktop and administrative tools. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Moj over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-2233HIGH Untrusted search path vulnerability in Installer of PDF Digital Signature Plugin (G2.30) and earlier, distributed till June 29, 2017 allows an attacker to gain privileges via a Tro | Jul 7, 2017 | 7.8 | 24 | NO | NO |
CVE-2017-2232HIGH Untrusted search path vulnerability in Installer of Shinseiyo Sogo Soft (4.8A) and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | Jul 7, 2017 | 7.8 | 24 | NO | NO |
CVE-2023-32639MEDIUM Applicant Programme Ver.7.06 and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be | Jul 25, 2023 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Moj.
Media articles that mention a CVE ID that affects a product developed by Moj — matched by CVE ID, not by vendor name.