Skip to content
COOEY

FAIL › dossier

stimulsoft

VENDOR

· dossier confidence 60%

Stimulsoft GmbH is a software vendor specializing in reporting and data visualization tools. Its security posture is compromised by a track record of critical remote code execution vulnerabilities, particularly involving directory traversal flaws in its dashboard and designer applications.

PROFILE
Categorysoftware vendorWhat they doStimulsoft GmbH develops and provides reporting, dashboarding, and data visualization software solutions for businesses.
SECURITY POSTURE

The company has a documented history of critical remote code execution (RCE) vulnerabilities in its dashboard and designer products, indicating potential weaknesses in input validation and code execution controls across its software stack.

Notable failures
  • CVE-2024-24398: Critical RCE via directory traversal in Stimulsoft Dashboard.JS
  • CVE-2023-25261: Critical RCE in Stimulsoft Designer (Desktop and Web)
  • CVE-2023-25261: Critical RCE in Stimulsoft Designer (Desktop and Web)
Patterns: repeated critical RCE vulnerabilities in dashboard and designer products; directory traversal leading to arbitrary code execution
FAILURE HISTORY · 2
DATEEVENTSEVSUMMARY
2024-02-06 CVE-2024-24398 critical Directory Traversal vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker to execute arbitrary code via a crafted payload to the fileName parameter of the Save function.
2023-03-27 CVE-2023-25261 critical Certain Stimulsoft GmbH products are affected by: Remote Code Execution. This affects Stimulsoft Designer (Desktop) 2023.1.4 and Stimulsoft Designer (Web) 2023.1.3 and Stimulsoft Viewer (Web) 2023.1.3. Access to the local file system is not prohibited in any way. Therefore, an at
Open questions: Stimulsoft GmbH's founding year and headquarters location · Stimulsoft GmbH's company size and ownership structure · Stimulsoft GmbH's official website URL
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-23 03:51:48.311930+00:00