The Sims Project maintains a focused software offering centered on the Sims product, with an observed vulnerability profile centered on file-handling weaknesses including path traversal and unrestricted file upload vulnerabilities. Treat this as a compact vendor footprint rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sims Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-34549HIGH Sims v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /uploadServlet. This vulnerability allows attackers to escalate privileges and execute | Jul 27, 2022 | 8.8 | 26 | NO | NO |
CVE-2022-34551MEDIUM Sims v1.0 was discovered to allow path traversal when downloading attachments. | Jul 27, 2022 | 6.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sims Project.
Media articles that mention a CVE ID that affects a product developed by Sims Project — matched by CVE ID, not by vendor name.