CVE Tools

Dieselscripts

9 CVEs tracked since 2006. Since May 2006, none of them reached CISA KEV.

Dieselscripts CVEs per month

May 2006 to Mar 2009. Point at a month, or focus the strip and use the arrow keys.
Dieselscripts CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2006-0510
2006-06null or fewer
2006-0710
2006-0840
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-0910
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-02null or fewer
2009-0320

Products

The products that kept showing up in Dieselscripts's monthly top three, with their CVEs summed over those months.

  1. Diesel Job Site33 months
  2. Diesel Joke Site22 months
  3. Diesel Pay22 months
  4. Diesel Paid Mail11 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Dieselscripts.

  1. CVE-2008-6468SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a browse action.7.5
  2. CVE-2008-6467SQL injection vulnerability in jobs/jobseekers/job-info.php in Diesel Job Site allows remote attackers to execute arbitrary SQL commands via the job_id parameter.7.5
  3. CVE-2008-4150SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-3763.7.5
  4. CVE-2006-4362Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via the ps parameter.4.3
  5. CVE-2006-4361Multiple cross-site scripting (XSS) vulnerabilities in jobseekers/forgot.php in Diesel Job Site allow remote attackers to inject arbitrary web script or HTML via the (1) uname or (2) SEmail paramet...4.3
  6. CVE-2006-4357PHP remote file inclusion vulnerability in clients/index.php in Diesel Smart Traffic allows remote attackers to execute arbitrary PHP code via a URL in the src parameter.7.5
  7. CVE-2006-4358Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the read parameter.4.3
  8. CVE-2006-3763SQL injection vulnerability in category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  9. CVE-2006-2540Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by the product developers.5.0

The record

Peak rank
#25 in Aug 2006
Busiest month shown
Aug 2006, 4 CVEs
Months with a KEV entry
0 since May 2006
Monthly snapshots
5 since 2006
Dieselscripts's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store