Badblue
4 CVEs tracked since 2007. Since Dec 2007, none of them reached CISA KEV.
Badblue CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2007-12 | 3 | 0 |
| 2008-01 | null or fewer | |
| 2008-02 | null or fewer | |
| 2008-03 | null or fewer | |
| 2008-04 | 1 | 0 |
Products
The products that kept showing up in Badblue's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting Badblue.
- CVE-2008-2003BadBlue 2.72 Personal Edition stores multiple programs in the web document root with insufficient access control, which allows remote attackers to (1) cause a denial of service via multiple invocat...7.5
- CVE-2007-6379BadBlue 2.72b and earlier allows remote attackers to obtain sensitive information via an invalid browse parameter, which reveals the installation path in an error message.5.0
- CVE-2007-6378Directory traversal vulnerability in upload.dll in BadBlue 2.72b and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the filename parameter.7.5
- CVE-2007-6377Stack-based buffer overflow in the PassThru functionality in ext.dll in BadBlue 2.72b and earlier allows remote attackers to execute arbitrary code via a long query string.7.5
The record
- Peak rank
- #25 in Dec 2007
- Busiest month shown
- Dec 2007, 3 CVEs
- Months with a KEV entry
- 0 since Dec 2007
- Monthly snapshots
- 2 since 2007