Sendio
Sendio develops email security and data protection products, with its vulnerability profile centered on the core Sendio platform and characterized by recurring weaknesses in sensitive-information handling and exposure. The durable signal reflects the product's role in managing confidential communications, where disclosure and access-control gaps present particular risk to information confidentiality. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
Trends Over Time
The number and severity of CVEs published that impact products developed by Sendio over time
Products(1 total)
Top CVEs
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-0999MEDIUM Sendio before 7.2.4 includes the session identifier in URLs in emails, which allows remote attackers to obtain sensitive information and hijack sessions by reading the jsessionid p | Jun 2, 2015 | 5.0 | 25 | NO | YES |
CVE-2016-10399HIGH Sendio versions before 8.2.1 were affected by a Local File Inclusion vulnerability that allowed an unauthenticated, remote attacker to read potentially sensitive system files via a | Jul 27, 2017 | 7.5 | 24 | NO | NO |
CVE-2014-8391MEDIUM The Web interface in Sendio before 7.2.4 does not properly handle sessions, which allows remote authenticated users to obtain sensitive information from other users' sessions via a | Jun 2, 2015 | 4.0 | 22 | NO | YES |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this vendor scope (3 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID that affects a product developed by Sendio.
Media Mentions
Media articles that mention a CVE ID that affects a product developed by Sendio — matched by CVE ID, not by vendor name.