Serverscheck develops monitoring software where the observed vulnerability footprint centers on web-application input-handling and path-access controls, with recurring weaknesses in cross-site scripting, path traversal, and SQL injection. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Serverscheck over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-18550HIGH ServersCheck Monitoring Software before 14.3.4 allows SQL Injection by an authenticated user. | Oct 21, 2018 | 8.8 | 28 | NO | NO |
CVE-2018-18552MEDIUM ServersCheck Monitoring Software through 14.3.3 allows local users to cause a denial of service (menu functionality loss) by creating an LNK file that points to a second LNK file, | Oct 24, 2018 | 6.5 | 23 | NO | NO |
CVE-2018-18551MEDIUM ServersCheck Monitoring Software through 14.3.3 has Persistent and Reflected XSS via the sensors.html status parameter, sensors.html type parameter, sensors.html device parameter, | Oct 24, 2018 | 6.1 | 22 | NO | NO |
CVE-2017-17832MEDIUM ServersCheck Monitoring Software before 14.2.3 is prone to a cross-site scripting vulnerability as user supplied-data is not validated/sanitized when passed in the settings_SMS_ALE | Dec 27, 2017 | 5.4 | 18 | NO | NO |
CVE-2005-1798MEDIUM Directory traversal vulnerability in ServersCheck Monitoring Software 5.9.0 to 5.10.0 allows remote attackers to read arbitrary files via .. (dot dot) sequences in an HTTP request. | May 29, 2005 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Serverscheck.
Media articles that mention a CVE ID that affects a product developed by Serverscheck — matched by CVE ID, not by vendor name.