Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ozeki

First CVE: Dec 21, 2006Active for: 20 yearsTotal CVEs: 12
31.4
VTI Score
Medium

Ozeki develops a modestly represented line of SMS gateway and messaging appliances positioned for enterprise communication infrastructure. The vendor's recurring vulnerabilities cluster around web-facing input handling and deserialization logic, spanning weakness classes including cross-site request forgery, argument injection, path traversal, and untrusted deserialization—patterns typical of web-interfaced gateway products. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
12
Total CVEs
More Total CVEs than 93% of tracked vendors
3.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 91% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 42% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ozeki over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 21, 2006
19 years ago
Most Recent CVE
Sep 30, 2020
2,123 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-14026HIGH
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the Export Of Contacts feature in Ozeki NG SMS Gateway through 4.17.6 via a value that is mishandled in a C
Sep 22, 20208.827NONO
CVE-2020-14025HIGH
Ozeki NG SMS Gateway through 4.17.6 has multiple CSRF vulnerabilities. For example, an administrator, by following a link, can be tricked into making unwanted changes such as insta
Sep 22, 20208.827NONO
CVE-2020-14022HIGH
Ozeki NG SMS Gateway 4.17.1 through 4.17.6 does not check the file type when bulk importing new contacts ("Import Contacts" functionality) from a file. It is possible to upload an
Sep 22, 20208.827NONO
CVE-2020-14029HIGH
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe manner. This opens the application to an XML External Entity
Sep 18, 20207.524NONO
CVE-2020-14030HIGH
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. It stores SMS messages in .NET serialized format on the filesystem. By generating (and writing to the disk) maliciou
Sep 30, 20207.219NONO
CVE-2020-14031HIGH
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The outbox functionality of the TXT File module can be used to delete all/most files in a folder. Because the produc
Sep 22, 20207.219NONO
CVE-2020-14028HIGH
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. By leveraging a path traversal vulnerability in the Autoreply module's Script Name, an attacker may write to or over
Sep 22, 20207.219NONO
CVE-2020-14021MEDIUM
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The ASP.net SMS module can be used to read and validate the source code of ASP files. By altering the path, it can b
Sep 18, 20204.918NONO
CVE-2020-14024MEDIUM
Ozeki NG SMS Gateway through 4.17.6 has multiple authenticated stored and/or reflected XSS vulnerabilities via the (1) Receiver or Recipient field in the Mailbox feature, (2) OZFOR
Sep 22, 20206.117NONO
CVE-2020-14027MEDIUM
An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The database connection strings accept custom unsafe arguments, such as ENABLE_LOCAL_INFILE, that can be leveraged b
Sep 22, 20205.315NONO
View all 12 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products12 CVEs
8%
33%
58%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network11 (91.7%)
Unknown1 (8.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (83.3%)
High1 (8.3%)
Unknown1 (8.3%)
User Interaction
None8 (66.7%)
Unknown1 (8.3%)
Required3 (25.0%)
Privileges Required
Low2 (16.7%)
High5 (41.7%)
None4 (33.3%)
Unknown1 (8.3%)

Exploit Exposure

Signals from CVEs in this vendor scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ozeki.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ozeki — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ozeki's Products

View all 1 CNAs →

Top CWEs