Virtual Communication Services has a focused vulnerability footprint centered on its VPMI Enterprise product, a communication platform where the observed exposure has centered on SQL injection and related input-handling weaknesses in database interaction layers. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Virtual Communication Services over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-0897HIGH SQL injection vulnerability in VCS Virtual Program Management Intranet (VPMi) Enterprise 3.3 allows remote attackers to execute arbitrary SQL commands via the UpdateID0 parameter t | Feb 25, 2006 | 7.5 | 19 | NO | NO |
CVE-2006-1266MEDIUM Cross-site scripting (XSS) vulnerability in Service_Requests.asp in VPMi Enterprise 3.3 allows remote attackers to inject arbitrary web script or HTML via the Request_Name_Display | Mar 19, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Virtual Communication Services.
Media articles that mention a CVE ID that affects a product developed by Virtual Communication Services — matched by CVE ID, not by vendor name.