ZUSO ART
CVE Numbering Authority
Latest CVE published
Overview
ZUSO ART is a CVE Numbering Authority that has published 38 CVE records since 2022. It is currently classified as active, with 30 CVEs published in the last two years. Its CVE data quality is graded A (100% overall completeness).
Among the 370 CNAs tracked here, ZUSO ART ranks #197 by CVE volume and reports more complete records than 60% of all CNAs.
Data quality report card
How complete and consistent ZUSO ART's CVE records are, scored across vendor, product, CVSS, and CWE coverage.
A CVE record only requires a description to be published. “Completeness” measures how often ZUSO ART also fills in the optional — but extremely useful — fields that make a vulnerability actually actionable: the affected vendor and product, a CVSS severity score, and a CWE weakness type. A higher score means more of this CNA’s CVEs include those details, so defenders spend less time enriching records by hand.
Report card grade
100%
Overall score
What these scores mean
- Vendor completeness
- The share of this CNA's CVEs that name an affected vendor.
- Product completeness
- The share that name a specific affected product.
- CVSS completeness
- The share that include a CVSS severity score.
- CWE completeness
- The share mapped to a CWE weakness type.
- Update rate
- How often this CNA revises CVE records after first publishing them.
- Vendor diversity
- How many distinct vendors this CNA publishes CVEs for.
Severity and exploitation
How the CVSS severity of ZUSO ART's published CVEs breaks down, and how many are known to be exploited in the wild.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of ZUSO ART's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Common weakness types
The CWE weakness categories ZUSO ART most often assigns to its CVEs. Follow any weakness to its full explanation.
- CWE-434Unrestricted Upload of File with Dangerous Type10 CVEs
- CWE-89Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')8 CVEs
- CWE-306Missing Authentication for Critical Function4 CVEs
- CWE-73External Control of File Name or Path4 CVEs
- CWE-862Missing Authorization3 CVEs
- CWE-94Improper Control of Generation of Code ('Code Injection')2 CVEs
- CWE-347Improper Verification of Cryptographic Signature1 CVE
- CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1 CVE
Publishing activity by year
How many CVEs ZUSO ART has published each year.
Top vendors
The vendors ZUSO ART publishes the most CVEs for.
- SunNet10 CVEs
- scshr6 CVEs
- Soar Cloud System CO., LTD.6 CVEs
- Huachu Digital Technology Ltd.6 CVEs
- easytest6 CVEs
- huaju6 CVEs
- EasyUse Digital Technology4 CVEs
- easyuse4 CVEs
Top products
The products ZUSO ART publishes the most CVEs for.
- Corporate Training Management System7 CVEs
- HRD Human Resource Management System6 CVEs
- hr portal6 CVEs
- easytest_online_learning_test_platform6 CVEs
- Easytest Online Test Platform6 CVEs
- ehrd ctms5 CVEs
- Data Management Center4 CVEs
- MailHunter Ultimate4 CVEs
Latest CVEs
The most recent CVEs assigned by ZUSO ART.
- CVE-2026-76158CWE-73
Datiphy Data Management Center - External Control of File Name or Path
Critical · CVSS 9.3EPSS 0.4%2026-08-21 - CVE-2026-76157CWE-306
Datiphy Data Management Center - Missing Authentication for Critical Function
High · CVSS 8.8EPSS 0.4%2026-08-21 - CVE-2026-76156CWE-78
Datiphy Data Management Center - Improper Neutralization of Special Elements used in an OS Command
Critical · CVSS 9.4EPSS 0.8%2026-08-21 - CVE-2026-76155CWE-1392
Datiphy Data Management Center - Use of Default Credentials
Critical · CVSS 9.3EPSS 0.3%2026-08-21 - CVE-2026-24727CWE-434
SUNNET Corporate Training Management System - Unrestricted Upload of File with Dangerous Type
Critical · CVSS 9.3EPSS 0.7%2026-07-24 - CVE-2026-24729CWE-434
Interinfo DreamMaker - Unrestricted Upload of File with Dangerous Type
Critical · CVSS 10.0EPSS 0.3%2026-01-30 - CVE-2026-24728CWE-306
Interinfo DreamMaker - Missing Authentication for Critical Function
Critical · CVSS 9.3EPSS 0.5%2026-01-30 - CVE-2025-31342CWE-434
Galaxy Software Services Vitals ESP Forum Module - Unrestricted Upload of File with Dangerous Type
Critical · CVSS 9.3EPSS 0.5%2025-10-20 - CVE-2025-54946CWE-89
SUNNET Corporate Training Management System - SQL Injection
Critical · CVSS 9.3EPSS 0.5%2025-08-30 - CVE-2025-54945CWE-73
SUNNET Corporate Training Management System - External Control of File Name or Path
Critical · CVSS 10.0EPSS 0.5%2025-08-30 - CVE-2025-54944CWE-434
SUNNET Corporate Training Management System - Unrestricted Upload of File with Dangerous Type
Medium · CVSS 6.9EPSS 0.7%2025-08-30 - CVE-2025-54943CWE-862
SUNNET Corporate Training Management System - Missing Authorization
Critical · CVSS 9.3EPSS 0.5%2025-08-30
Track new ZUSO ART CVEs as they are published and get AI-written analysis and remediation guidance.
Monitor ZUSO ART CVEsOther CNAs
Compare data quality across other CVE Numbering Authorities.
Frequently asked questions
Common questions about the ZUSO ART CNA.
- What is the ZUSO ART CNA?
- ZUSO ART is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 38 CVE records since 2022.
- How many CVEs has ZUSO ART published?
- ZUSO ART has published 38 CVE records, including 30 in the last two years.
- What is ZUSO ART's CVE data quality grade?
- RadicalNotion.AI grades ZUSO ART's CVE data quality as A, with an overall completeness score of 100%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (100%) information.
- What products does ZUSO ART publish CVEs for?
- ZUSO ART most frequently publishes CVEs for Corporate Training Management System, HRD Human Resource Management System, hr portal, easytest_online_learning_test_platform, Easytest Online Test Platform.
- Which vendors does ZUSO ART cover?
- ZUSO ART publishes CVEs across 11 distinct vendors, most often SunNet, scshr, Soar Cloud System CO., LTD., Huachu Digital Technology Ltd., easytest.
- Is ZUSO ART actively publishing CVEs?
- ZUSO ART is currently active, based on 30 CVEs in the last two years.
- What is the average severity of ZUSO ART's CVEs?
- The average CVSS base score across ZUSO ART's scored CVEs is 8.8.
- How many critical CVEs has ZUSO ART published?
- ZUSO ART has published 29 critical-severity CVEs and 9 high-severity CVEs.
- Are any of ZUSO ART's CVEs in CISA's Known Exploited Vulnerabilities catalog?
- No. None of ZUSO ART's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
- What are the most common weakness types in ZUSO ART's CVEs?
- ZUSO ART's CVEs most often map to these CWE weakness types: CWE-434 (Unrestricted Upload of File with Dangerous Type), CWE-89 (Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')), CWE-306 (Missing Authentication for Critical Function), CWE-73 (External Control of File Name or Path).
- How does ZUSO ART rank among CNAs?
- By total CVE volume, ZUSO ART ranks #197 of 370 CNAs, and it reports more complete CVE records than 60% of all CNAs.
References
- Official CVE.org list of CNA partners (opens in a new tab)
- Learn: What is a CNA?
- CWE directory: the weakness types this CNA maps its CVEs to
CNA report-card grades are computed by RadicalNotion.AI from published CVE records. CVE data is sourced from the CVE Program.
Track ZUSO ART CVEs
Monitor new vulnerabilities as this CNA publishes them, with AI-written analysis and remediation guidance.