p
phome
Security Risk Profile
58
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 18 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from November 16, 2012 to present
18
Total CVEs
11
Critical+High
0
Exploited
11
Unpatched
Threat Assessment
Avg CVSS
7.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
11
Critical/High
Risk Level
58/100
medium
Severity Distribution
Critical
4High
7Medium
7Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
3
2
Code Injection
3
3
XSS
3
4
CSRF
3
5
Malicious File Upload
2
Most Affected Products
1. Phome Empirecms19
2. EmpireSoft EmpireCMS2
3. Phome Empirebak1
4. DedeCMS Dedecms1
Recent Vulnerabilities
See more →CVE-2025-15423
CVSS 8.8high
EmpireSoft EmpireCMS connect.php CheckSaveTranFiletype unrestricted upload
Jan 2, 2026🔧 No Patch
CVE-2025-15422
CVSS 7.5high
EmpireSoft EmpireCMS IP Address connect.php egetip protection mechanism
Jan 2, 2026🔧 No Patch
CVE-2025-50515
CVSS 6.5medium
Aug 14, 2025🔧 No Patch
CVE-2023-50162
CVSS 7.2high
Jan 8, 2024🔧 No Patch
CVE-2022-28585
CVSS 9.8critical
May 3, 2022🔧 No Patch
CVE-2020-22937
CVSS 9.8critical
Aug 17, 2021🔧 No Patch
CVE-2018-19461
CVSS 4.8medium
Jun 7, 2019🔧 No Patch
CVE-2018-19462
CVSS 7.2high
Jun 7, 2019🔧 No Patch
CVE-2019-12362
CVSS 6.1medium
May 27, 2019🔧 No Patch
CVE-2019-12361
CVSS 6.1medium
May 27, 2019🔧 No Patch
Monitor phome in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.