Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rejetto

First CVE: Oct 7, 2014Active for: 12 yearsTotal CVEs: 5

Rejetto's vulnerability footprint centers on its HTTP File Server, a lightweight file-sharing application with a narrow product scope but notable reach in deployment. The recurring exposure involves template-engine injection, OS command injection, buffer overflows, and access-control weaknesses characteristic of web-facing server software handling user input and system-level operations. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
5
Total CVEs
More Total CVEs than 83% of tracked vendors
1.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
8.7
Avg CVSS Score
Higher Avg CVSS Score than 83% of tracked vendors
40.0%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Rejetto over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 7, 2014
11 years ago
Most Recent CVE
Jul 4, 2024
750 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (5 CVEs).

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-23692CRITICAL
Rejetto HTTP File Server, up to and including version 2.3m, is vulnerable to a template injection vulnerability. This vulnerability allows a remote, unauthenticated attacker to exe
May 31, 20249.899YESYES
CVE-2014-6287CRITICAL
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c allows remote attackers to execute arbitrary programs via a %
Oct 7, 20149.899YESYES
CVE-2024-39943HIGH
rejetto HFS (aka HTTP File Server) 3 before 0.52.10 on Linux, UNIX, and macOS allows OS command execution by remote authenticated users (if they have Upload permissions). This occu
Jul 4, 20248.855NONO
CVE-2020-13432HIGH
rejetto HFS (aka HTTP File Server) v2.3m Build #300, when virtual files or folders are used, allows remote attackers to trigger an invalid-pointer write access violation via concur
Jun 8, 20207.533NONO
CVE-2014-7226HIGH
The file comment feature in Rejetto HTTP File Server (hfs) 2.3c and earlier allows remote attackers to execute arbitrary code by uploading a file with certain invalid UTF-8 byte se
Oct 10, 20147.532NOYES
View all 5 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products5 CVEs
60%
40%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network4 (80.0%)
Unknown1 (20.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (80.0%)
High0 (0.0%)
Unknown1 (20.0%)
User Interaction
None4 (80.0%)
Unknown1 (20.0%)
Required0 (0.0%)
Privileges Required
Low1 (20.0%)
High0 (0.0%)
None3 (60.0%)
Unknown1 (20.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (5 CVEs).

CISA KEV
2 CVEs
40.0% of CVEs· 100th percentile
Metasploit
2 CVEs
40.0% of CVEs· 99th percentile
Nuclei
2 CVEs
40.0% of CVEs· 98th percentile
ExploitDB
3 CVEs
60.0% of CVEs· 83rd percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rejetto.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rejetto — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rejetto's Products

View all 2 CNAs →

Top CWEs