Everest Software A.I CyberSecurity Scoring
Everest Software
Company Information
Website:http://www.everestsoftwareinc.com
Employees number:88
Number of followers:0
NAICS:5112
Industry Type:Software Development
Homepage:everestsoftwareinc.com
Everest Software Risk Score (AI oriented)
Between 800 and 849
Everest SoftwareSoftware Development
Updated:
24/08/2026
24/08/2026
818/1000
Good
A
Everest Software Global Score (TPRM)
xxxx
Everest SoftwareSoftware Development
Score locked

Everest SoftwareGood
Current Score
818A (GOOD)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
819
Vulnerability
24 Aug 2026 • Everest Software
Everest Forms: WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks
Critical Everest Forms WordPress Plugin Vulnerability Exposes 100,000+ Sites to Takeover
818
CRITICAL-1
EVE1787578403
Critical Everest Forms WordPress Plugin Vulnerability Exposes 100,000+ Sites to Takeover
A severe vulnerability (CVE-2026-19598) in the Everest Forms WordPress plugin has left over 100,000 websites vulnerable to complete site takeover via unauthenticated remote code execution (RCE). The flaw, rated 9.8 on the CVSS scale, stems from inadequate file-type and path validation in the plugin’s `EVF_Form_Fields_Upload` class, affecting versions prior to 3.0.9.5.
Attackers can exploit the vulnerability by submitting maliciously crafted requests to the plugin’s file-upload feature, allowing them to upload arbitrary files including PHP web shells without requiring valid WordPress credentials. Once deployed, a web shell grants attackers full remote control, enabling them to execute commands, steal databases, modify site content, or inject malicious JavaScript into visitor-facing pages.
The impact extends beyond defacement: threat actors can extract database credentials, create unauthorized administrator accounts, alter themes/plugins, or delete critical files like `wp-config.php`, potentially forcing a WordPress site into installation mode and hijacking its database. Compromised sites may also be repurposed for phishing, malware distribution, SEO spam, or credential theft.
Security firm Wordfence reported the issue and confirmed its firewall blocks exploitation attempts. Administrators are urged to update to Everest Forms 3.0.9.5 or later immediately. Those unable to patch should disable the plugin, particularly if public file-upload forms are in use. Indicators of compromise include unauthorized admin accounts, suspicious PHP files in upload directories, or unusual log activity targeting Everest Forms endpoints. Suspected breaches warrant credential rotation, backup restoration, and a full review of plugins, themes, and server-side persistence mechanisms.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
JULY 2026
819
JUNE 2026
819
MAY 2026
819
APRIL 2026
819
MARCH 2026
819
FEBRUARY 2026
819
JANUARY 2026
819
DECEMBER 2025
819
NOVEMBER 2025
819
OCTOBER 2025
819
SEPTEMBER 2025
819
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Everest Software ??
What was Everest Software's A.I Rankiteo Cyber Score in July 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in June 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in May 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in April 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in March 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in February 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in January 2026 ??
What was Everest Software's A.I Rankiteo Cyber Score in December 2025 ??
What was Everest Software's A.I Rankiteo Cyber Score in November 2025 ??
What was Everest Software's A.I Rankiteo Cyber Score in October 2025 ??
What was Everest Software's A.I Rankiteo Cyber Score in September 2025 ??
What is the average per-incident point impact on Everest Software's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Everest Software ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Everest Software's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?