427bb
4 CVEs tracked since 2005. Since Mar 2005, none of them reached CISA KEV.
427bb CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2005-03 | 1 | 0 |
| 2005-04 | null or fewer | |
| 2005-05 | null or fewer | |
| 2005-06 | null or fewer | |
| 2005-07 | null or fewer | |
| 2005-08 | null or fewer | |
| 2005-09 | null or fewer | |
| 2005-10 | null or fewer | |
| 2005-11 | null or fewer | |
| 2005-12 | null or fewer | |
| 2006-01 | 3 | 0 |
Products
The products that kept showing up in 427bb's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting 427bb.
- CVE-2006-0155Cross-site scripting (XSS) vulnerability in posts.php in 427BB 2.2 and 2.2.1 allows remote attackers to inject arbitrary Javascript via a new message with a url bbcode tag containing a javascript URI.4.3
- CVE-2006-0154SQL injection vulnerability in showthread.php in 427BB 2.2 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the ForumID parameter.7.5
- CVE-2006-0153427BB 2.2 and 2.2.1 verifies authentication credentials based on the username, authenticated, and usertype cookies, which allows remote attackers to bypass authentication by using a valid username ...7.5
- CVE-2005-0629Multiple cross-site scripting (XSS) vulnerabilities in profile.php in 427BB 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) user or (2) Avatar parameters.4.3
The record
- Peak rank
- #23 in Jan 2006
- Busiest month shown
- Jan 2006, 3 CVEs
- Months with a KEV entry
- 0 since Mar 2005
- Monthly snapshots
- 2 since 2005