Uyumsoft develops a focused enterprise resource planning product, LioxERP, that serves business-critical functions within its deployment scope. The durable signal in the vendor's vulnerability profile centers on cross-site scripting weaknesses arising from improper input neutralization in web-facing components, a characteristic risk in web-integrated ERP systems.
The number and severity of CVEs published that impact products developed by Uyumsoft over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-5989MEDIUM An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Information System and Technologies' LioXERP allows an authenticat | Dec 21, 2023 | 6.1 | 18 | NO | NO |
CVE-2023-5988MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Uyumsoft Information System and Technologies LioXERP allows Reflected XSS.
Th | Dec 21, 2023 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Uyumsoft.
Media articles that mention a CVE ID that affects a product developed by Uyumsoft — matched by CVE ID, not by vendor name.