Qualitysoft develops a focused line of quality and document management products centered on QND and its variants, with a vulnerability profile anchored in path-traversal and privilege-management weaknesses affecting these core offerings. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Qualitysoft over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-10861CRITICAL Directory traversal vulnerability in QND Advance/Standard allows an attacker to read arbitrary files via a specially crafted command. | Dec 1, 2017 | 9.1 | 28 | NO | NO |
CVE-2021-20713HIGH Privilege escalation vulnerability in QND Advance/Premium/Standard Ver.11.0.4i and earlier allows an attacker who can log in to the PC where the product's Windows client is install | May 24, 2021 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Qualitysoft.
Media articles that mention a CVE ID that affects a product developed by Qualitysoft — matched by CVE ID, not by vendor name.