Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Visam

First CVE: Apr 3, 2020Active for: 6 yearsTotal CVEs: 16
30.9
VTI Score
Low

Visam develops a suite of web-based automation and editing products centered on its VBase platform, which occupy a notable position in the vulnerability landscape despite a narrow product portfolio. The vendor's exposure reflects characteristic flaws in web application and file-handling logic: XML external entity injection, buffer overflows, access control weaknesses, path traversal, and cross-site scripting, with vulnerabilities showing a tendency toward moderate severity outcomes. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
16
Total CVEs
More Total CVEs than 95% of tracked vendors
1.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 75% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 45% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Visam over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 3, 2020
6 years ago
Most Recent CVE
Apr 26, 2023
1,185 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (16 CVEs).

16 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-7004HIGH
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow weak or insecure permissions on the VBASE directory resulting in elevation of privileges or malicious effe
Apr 3, 20208.826NONO
CVE-2022-3217HIGH
When logging in to a VBASE runtime project via Web-Remote, the product uses XOR with a static initial key to obfuscate login messages. An unauthenticated remote attacker with the a
Sep 16, 20227.525NONO
CVE-2020-10601HIGH
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a local attacker to bypass the password-protec
Apr 3, 20207.825NONO
CVE-2020-10599CRITICAL
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buffer overflow, which may lead to a denial-
Apr 3, 20209.825NONO
CVE-2021-42537HIGH
VISAM VBASE version 11.6.0.6 processes an XML document that can contain XML entities with URIs that resolve to documents outside of the intended sphere of control, causing the prod
Jul 27, 20227.523NONO
CVE-2021-38417HIGH
VISAM VBASE version 11.6.0.6 is vulnerable to improper access control via the web-remote endpoint, which may allow an unauthenticated user viewing access to folders and files in th
Jul 27, 20227.523NONO
CVE-2022-45876MEDIUM
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
Apr 26, 20235.521NONO
CVE-2022-46286MEDIUM
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
Mar 21, 20235.521NONO
CVE-2022-45468MEDIUM
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
Mar 21, 20235.521NONO
CVE-2022-45121MEDIUM
Versions of VISAM VBASE Automation Base prior to 11.7.5 may disclose information if a valid user opens a specially crafted file.
Mar 21, 20235.520NONO
View all 16 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products16 CVEs
50%
44%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local9 (56.3%)
Network7 (43.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None8 (50.0%)
Unknown0 (0.0%)
Required8 (50.0%)
Privileges Required
Low2 (12.5%)
High0 (0.0%)
None14 (87.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (16 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Visam.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Visam — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Visam's Products

View all 2 CNAs →

Top CWEs