N I Agroinformatics maintains a narrowly scoped product line centered on the Soy CMS platform, a web content management system serving agricultural information and publishing use cases. The vendor's disclosed vulnerabilities reflect typical web application exposure, centered on common input-handling and access-control weaknesses found in content management systems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by N I Agroinformatics over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-2163HIGH Directory traversal vulnerability in SOY CMS Ver.1.8.1 to Ver.1.8.12 allows authenticated attackers to read arbitrary files via shop_id. | May 12, 2017 | 7.5 | 20 | NO | NO |
CVE-2017-2164MEDIUM Cross-site scripting vulnerability in SOY CMS with installer 1.8.12 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | May 12, 2017 | 6.1 | 17 | NO | NO |
CVE-2014-1998MEDIUM Cross-site scripting (XSS) vulnerability in Nippon Institute of Agroinformatics SOY CMS 1.4.0c and earlier allows remote attackers to inject arbitrary web script or HTML via unspec | Jun 5, 2014 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by N I Agroinformatics.
Media articles that mention a CVE ID that affects a product developed by N I Agroinformatics — matched by CVE ID, not by vendor name.