Softros maintains a narrow portfolio of network and messaging software, including its network time system and LAN messenger products, with a modest but consistent vulnerability signal. The recurring exposure centers on input-validation weaknesses, including improper handling of specified indices and offsets, reflecting the parsing and user-input demands of these communication-layer applications. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Softros over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-7658HIGH NTSServerSvc.exe in the server in Softros Network Time System 2.3.4 allows remote attackers to cause a denial of service (daemon crash) by sending exactly 11 bytes. | Mar 26, 2018 | 7.5 | 57 | NO | YES |
CVE-2018-25232MEDIUM Softros LAN Messenger 9.2 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string to the custom log | Mar 30, 2026 | 5.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Softros.
Media articles that mention a CVE ID that affects a product developed by Softros — matched by CVE ID, not by vendor name.