Safensoft develops an enterprise software suite focused on system control, monitoring, and security, with its vulnerability profile centered on products such as SoftControl Enterprise Suite, SysWatch, and TPSecure. The recurring weakness classes—including code integrity validation gaps, insufficient condition checking, buffer-boundary issues, and credential protection deficiencies—reflect common risks in local-privilege and system-management software where trust boundaries and input handling are critical. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Safensoft over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-13012HIGH Download of code with improper integrity check in snsupd.exe and upd.exe in SAFE'N'SEC SoftControl/SafenSoft SysWatch, SoftControl/SafenSoft TPSecure, and SoftControl/SafenSoft Ent | Jun 29, 2018 | 8.1 | 26 | NO | NO |
CVE-2018-13014HIGH Storing password in recoverable format in safensec.com (SysWatch service) in SAFE'N'SEC SoftControl/SafenSoft SysWatch, SoftControl/SafenSoft TPSecure, and SoftControl/SafenSoft En | Jun 29, 2018 | 7.8 | 24 | NO | NO |
CVE-2018-13013HIGH Improper check of unusual conditions when launching msiexec.exe in safensec.com (SysWatch service) in SAFE'N'SEC SoftControl/SafenSoft SysWatch, SoftControl/SafenSoft TPSecure, and | Jun 29, 2018 | 7.8 | 24 | NO | NO |
CVE-2018-5718HIGH Improper restriction of write operations within the bounds of a memory buffer in snscore.sys in SoftControl/SafenSoft SysWatch, SoftControl/SafenSoft TPSecure, SoftControl/SafenSof | Jun 12, 2018 | 7.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Safensoft.
Media articles that mention a CVE ID that affects a product developed by Safensoft — matched by CVE ID, not by vendor name.