CVE Tools

Bugada-andrea

10 CVEs tracked since 2005. Since May 2005, none of them reached CISA KEV.

Bugada-andrea CVEs per month

May 2005 to May 2007. Point at a month, or focus the strip and use the arrow keys.
Bugada-andrea CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0520
2005-06null or fewer
2005-07null or fewer
2005-08null or fewer
2005-0940
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-0310
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-0920
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-0510

Products

The products that kept showing up in Bugada-andrea's monthly top three, with their CVEs summed over those months.

  1. PHP Advanced Transfer Manager105 months

Latest CVEs

The 10 most recently published vulnerabilities affecting Bugada-andrea.

  1. CVE-2007-2659Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers to read arbitrary files and obtain script source code via a .. (dot dot) in the...5.0
  2. CVE-2006-4749Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpATM) 1.20 allow remote attackers to execute arbitrary PHP code via the include_location parameter in (1) acti...7.5
  3. CVE-2006-4594Multiple PHP remote file inclusion vulnerabilities in PHP Advanced Transfer Manager (phpAtm) 1.21 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the include_location ...7.5
  4. CVE-2006-1209PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web root with insufficient access control, which allows remote attackers to downlo...5.0
  5. CVE-2005-2998PHP Advanced Transfer Manager 1.30 has a default password for the administrator user, which allows remote attackers to upload and execute arbitrary PHP files.7.5
  6. CVE-2005-2999PHP Advanced Transfer Manager 1.30 allows remote attackers to obtain sensitive PHP configuration information via a direct request to test.php.5.0
  7. CVE-2005-3000Multiple cross-site scripting (XSS) vulnerabilities in viewers/txt.php in PHP Advanced Transfer Manager 1.30 allow remote attackers to inject arbitrary web script or HTML via the (1) font, (2) norm...4.3
  8. CVE-2005-2997Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitrary files via ".." sequences in (1) the currentdir parameter to txt.php, or t...5.0
  9. CVE-2005-1681PHP remote file inclusion vulnerability in common.php in phpATM 1.21, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via a URL in the include_location paramete...7.5
  10. CVE-2005-1604PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing multiple file extensions, as demonstrated using a filename ending in "php.ns",...7.5

The record

Peak rank
#9 in Sep 2005
Busiest month shown
Sep 2005, 4 CVEs
Months with a KEV entry
0 since May 2005
Monthly snapshots
5 since 2005
Bugada-andrea's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store