Xythos develops enterprise document management and file-sharing platforms, including its digital locker and WebFile server products, which serve educational and institutional deployments. The limited disclosure activity reflects characterization challenges typical of legacy or narrowly scoped enterprise software; current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xythos over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3255MEDIUM Multiple cross-site request forgery (CSRF) vulnerabilities in Xythos Enterprise Document Manager (XEDM) before 5.0.25.8, and 6.x before 6.0.46.1, allow remote authenticated users t | Jun 27, 2007 | 6.5 | 18 | NO | NO |
Multiple cross-site scripting (XSS) vulnerabilities in Xythos Enterprise Document Manager (XEDM) before 5.0.25.8, and 6.x before 6.0.46.1, allow remote authenticated users to injec | Jun 27, 2007 | 3.5 | 16 | NO | NO |
CVE-2007-3256MEDIUM Xythos Enterprise Document Manager (XEDM), Digital Locker (XDL), and possibly WebFile Server before 6.0.46.1 allow remote authenticated users to associate arbitrary Content-Type HT | Jun 27, 2007 | 4.0 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xythos.
Media articles that mention a CVE ID that affects a product developed by Xythos — matched by CVE ID, not by vendor name.