aEnrich
Security Scorecard
Score
18D
Total CVEs
1,467
Patch Rate
20%
292 patched
Avg Response
99d
days to patch
Critical Gaps
39
exploitable, no detection
Severity Breakdown
Critical27
High196
Medium606
Low28
Patch Status
Patched292 (20%)
Partial/Workaround22 (1%)
Unpatched1153 (79%)
CVEs (1,598)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-63512 | aEnrich HR Token Forgery | MEDIUM | 6.5 | 27d | Unpatched |
| CVE-2025-59115 | Windu CMS XSS | MEDIUM | 5.4 | 27d | Patched |
| CVE-2025-58121 | Checkmk API Permissions Bypass | MEDIUM | 5.4 | 27d | Patched |
| CVE-2025-59116 | Windu CMS User Enumeration Vulnerability | MEDIUM | 5.3 | 27d | Patched |
| CVE-2025-63408 | Agent DVR RCE | MEDIUM | 5.1 | 27d | Unpatched |
| CVE-2025-13325 | A vulnerability was determined SQL Injection | MEDIUM | 6.3 | 27d | Unpatched |
| CVE-2025-13345 | aEnrich Ticketing System Vulnerability | MEDIUM | 6.3 | 27d | Unpatched |
| CVE-2025-59117 | Windu CMS Cross-Site Scripting Vulnerability | MEDIUM | 4.8 | 27d | Patched |
| CVE-2025-63883 | Electic-Shop DOM XSS | MEDIUM | 5.4 | 27d | Unpatched |
| CVE-2025-13346 | aEnrich Train Station Ticketing System Vulnerability | MEDIUM | 6.3 | 27d | Unpatched |