Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Everest Software

Everest Software Vendor Cyber Rating & Cyber Score

everestsoftwareinc.com

Everest Software empowers companies to view and manage every function of their business more effectively. The company's fully integrated business management software, Everest Advanced, addresses the unique needs of growing small and medium businesses (SMBs) in the wholesale/distribution and retail industries by allowing them to quickly manage and track their business online and back-office. Everest Software is committed to providing customers with the service, support and expertise they require to increase efficiency and profitability with a solution that provides an unmatched rapid return on investment. Everest Software is the proud winner of the SIIA Codie Award for 'Best Business Software Product'.


Everest Software A.I CyberSecurity Scoring

Everest Software
Company Information
Website:http://www.everestsoftwareinc.com
Employees number:88
Number of followers:0
NAICS:5112
Industry Type:Software Development
Homepage:everestsoftwareinc.com
Everest Software Risk Score (AI oriented)
Between 800 and 849
logo
Everest SoftwareSoftware Development
Updated:
24/08/2026
818/1000
Good
A
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Everest Software Global Score (TPRM)
xxxx
logo
Everest SoftwareSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Everest Software
Everest SoftwareGood
Current Score
818A (GOOD)
01000
1 incidents
-1 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
819Before Incident
Vulnerability
24 Aug 2026Everest Software
Everest Forms: WordPress Plugin Vulnerability Exposes 100,000 Sites to Complete Site Takeover Attacks

Critical Everest Forms WordPress Plugin Vulnerability Exposes 100,000+ Sites to Takeover

818After Incident
CRITICAL-1
EVE1787578403
Critical Everest Forms WordPress Plugin Vulnerability Exposes 100,000+ Sites to Takeover A severe vulnerability (CVE-2026-19598) in the Everest Forms WordPress plugin has left over 100,000 websites vulnerable to complete site takeover via unauthenticated remote code execution (RCE). The flaw, rated 9.8 on the CVSS scale, stems from inadequate file-type and path validation in the plugin’s `EVF_Form_Fields_Upload` class, affecting versions prior to 3.0.9.5. Attackers can exploit the vulnerability by submitting maliciously crafted requests to the plugin’s file-upload feature, allowing them to upload arbitrary files including PHP web shells without requiring valid WordPress credentials. Once deployed, a web shell grants attackers full remote control, enabling them to execute commands, steal databases, modify site content, or inject malicious JavaScript into visitor-facing pages. The impact extends beyond defacement: threat actors can extract database credentials, create unauthorized administrator accounts, alter themes/plugins, or delete critical files like `wp-config.php`, potentially forcing a WordPress site into installation mode and hijacking its database. Compromised sites may also be repurposed for phishing, malware distribution, SEO spam, or credential theft. Security firm Wordfence reported the issue and confirmed its firewall blocks exploitation attempts. Administrators are urged to update to Everest Forms 3.0.9.5 or later immediately. Those unable to patch should disable the plugin, particularly if public file-upload forms are in use. Indicators of compromise include unauthorized admin accounts, suspicious PHP files in upload directories, or unusual log activity targeting Everest Forms endpoints. Suspected breaches warrant credential rotation, backup restoration, and a full review of plugins, themes, and server-side persistence mechanisms.
INCIDENT DETAILS -
TYPE
Remote Code Execution (RCE)
IMPACT
Data Compromised: Database credentials, personally identifiable information, payment information (potential)Systems Affected: WordPress sites using Everest Forms plugin (versions prior to 3.0.9.5)Operational Impact: Complete site takeover, unauthorized administrative access, potential deletion of critical files (e.g., `wp-config.php`)Brand Reputation Impact: High (potential for phishing, malware distribution, SEO spam, or credential theft via compromised sites)Identity Theft Risk: High (if personally identifiable information is exfiltrated)Payment Information Risk: High (if payment data is stored or processed on compromised sites)
DATA BREACH
Database credentialsPersonally identifiable information (potential)Payment information (potential)Sensitivity Of Data: HighData Exfiltration: Potential (via web shell)PHP web shellsMalicious JavaScriptPersonally Identifiable Information: Potential
JULY 2026
819Before Incident
JUNE 2026
819Before Incident
MAY 2026
819Before Incident
APRIL 2026
819Before Incident
MARCH 2026
819Before Incident
FEBRUARY 2026
819Before Incident
JANUARY 2026
819Before Incident
DECEMBER 2025
819Before Incident
NOVEMBER 2025
819Before Incident
OCTOBER 2025
819Before Incident
SEPTEMBER 2025
819Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Everest Software ?
?
What was Everest Software's A.I Rankiteo Cyber Score in July 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Everest Software's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on Everest Software's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Everest Software ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Everest Software's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?
Everest Software Cyber Scoring History | Rankiteo