Tenefit's vulnerability footprint is concentrated in the Kaazing WebSocket Gateway, a real-time messaging and communication platform that bridges disparate systems. The observed signal centers on information-disclosure issues where sensitive data exposure to unauthorized actors reflects the gateway's role as a data intermediary in network architectures. Current CVE counts, severity distribution, exploitation activity, and KEV listing status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tenefit over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-6309HIGH The HTTP and WebSocket engine components in the server in Kaazing Gateway 4.0.2, 4.0.3, and 4.0.4 and Gateway - JMS Edition 4.0.2, 4.0.3, and 4.0.4 allow remote attackers to obtain | Apr 12, 2018 | 7.5 | 23 | NO | NO |
CVE-2017-6910HIGH The HTTP and WebSocket engine components in the server in Kaazing Gateway before 4.5.3 hotfix-1, Gateway - JMS Edition before 4.0.5 hotfix-15, 4.0.6 before hotfix-4, 4.0.7, 4.0.9 b | Apr 12, 2018 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tenefit.
Media articles that mention a CVE ID that affects a product developed by Tenefit — matched by CVE ID, not by vendor name.