Sftnow maintains a focused web application with a vulnerability profile anchored in cross-site request forgery weaknesses, a class of flaw endemic to state-changing web operations that lack proper token validation. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sftnow over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-9688HIGH sftnow through 2018-12-29 allows index.php?g=Admin&m=User&a=add_post CSRF to add an admin account. | Mar 11, 2019 | 8.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sftnow.
Media articles that mention a CVE ID that affects a product developed by Sftnow — matched by CVE ID, not by vendor name.