Snapstream develops personal video station (PVS) software for media capture and management, representing a narrowly scoped vendor footprint. The observed vulnerability signals cluster around the PVS product line itself, though the weakness classifications recorded are broad placeholders rather than specific technical patterns; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Snapstream over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2001-1108HIGH Directory traversal vulnerability in SnapStream PVS 1.2a allows remote attackers to read arbitrary files via a .. (dot dot) attack in the requested URL. | Jul 26, 2001 | 7.5 | 29 | NO | YES |
CVE-2004-0046MEDIUM Cross-site scripting (XSS) vulnerability in SnapStream PVS LITE allows remote attackers to inject arbitrary web script or HTML via a GET request containing a terminating '"' (doubl | Feb 3, 2004 | 4.3 | 24 | NO | YES |
CVE-2001-1107MEDIUM SnapStream PVS 1.2a stores its passwords in plaintext in the file SSD.ini, which could allow a remote attacker to gain privileges on the server. | Jul 26, 2001 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Snapstream.
Media articles that mention a CVE ID that affects a product developed by Snapstream — matched by CVE ID, not by vendor name.