Ranksol's vulnerability footprint centers on a small cluster of web-enabled communication and fax-related products, including Live Call Support, Nimble Professional, and its Twilio Web-to-Fax Machine system, where exposures recur through application-layer input-handling weaknesses. The durable signal reflects cross-site request forgery and SQL injection patterns typical of web application platforms, particularly where user-supplied data interacts with backend databases and session management. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ranksol over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17388CRITICAL SQL Injection exists in Twilio WEB To Fax Machine System 1.0 via the email or password parameter to login_check.php, or the id parameter to add_email.php or edit_content.php. | Jun 19, 2019 | 9.8 | 29 | NO | NO |
CVE-2018-17387HIGH CSRF exists in Nimble Messaging Bulk SMS Marketing Application 1.0 for adding an admin account. | Jun 19, 2019 | 8.8 | 26 | NO | NO |
CVE-2018-17389HIGH CSRF exists in server.php in Live Call Support Application 1.5 for adding an admin account. | Jun 19, 2019 | 8.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ranksol.
Media articles that mention a CVE ID that affects a product developed by Ranksol — matched by CVE ID, not by vendor name.