Pnmsoft's vulnerability footprint centers on Sequence Kinetics, a workflow and document-management product, with observed weaknesses clustering around sensitive-information exposure and cross-site scripting in web-facing contexts. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pnmsoft over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-6303MEDIUM The Monitoring Administration pages in PNMsoft Sequence Kinetics before 7.7 do not properly detect recursion during entity expansion, which allows remote attackers to cause a denia | Feb 19, 2015 | 5.0 | 19 | NO | NO |
CVE-2014-6304MEDIUM The Form Controls CSS file in PNMsoft Sequence Kinetics before 7.7 allows remote attackers to obtain sensitive source-code information via unspecified vectors. | Feb 19, 2015 | 5.0 | 18 | NO | NO |
CVE-2014-6302MEDIUM The Monitoring Administration pages in PNMsoft Sequence Kinetics before 7.7 allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction wit | Feb 19, 2015 | 5.0 | 18 | NO | NO |
CVE-2014-6301MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in the tables-management module in PNMsoft Sequence Kinetics before 7.7 allow remote attackers to inject arbitrary web script or | Feb 19, 2015 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pnmsoft.
Media articles that mention a CVE ID that affects a product developed by Pnmsoft — matched by CVE ID, not by vendor name.