CVE Tools

Epic-designs

10 CVEs tracked since 2005. Since Dec 2005, none of them reached CISA KEV.

Epic-designs CVEs per month

Dec 2005 to Nov 2006. Point at a month, or focus the strip and use the arrow keys.
Epic-designs CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-1220
2006-0120
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-0650
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-1110

Products

The products that kept showing up in Epic-designs's monthly top three, with their CVEs summed over those months.

  1. Eggblog74 months
  2. Tinybb31 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Epic-designs.

  1. CVE-2006-6046Multiple cross-site scripting (XSS) vulnerabilities in eggblog 3.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) edit parameter to (a) admin/articles.php or (b) admin/...6.8
  2. CVE-2006-2740Multiple SQL injection vulnerabilities in Epicdesigns tinyBB 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) q parameter in (a) forgot.php, and the (2) username and (3) pas...6.8
  3. CVE-2006-2727home/register.php in Eggblog before 3.0 allows remote attackers to change the password of administrators and possibly other users via a modified username parameter.7.5
  4. CVE-2006-2739PHP remote file inclusion vulnerability in footers.php in Epicdesigns tinyBB 0.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the tinybb_foo...5.1
  5. CVE-2006-2741Cross-site scripting (XSS) vulnerability in Epicdesigns tinyBB 0.3 allow remote attackers to inject arbitrary web script or HTML via the q parameter in forgot.php, which is echoed in an error messa...6.8
  6. CVE-2006-2725SQL injection vulnerability in rss/posts.php in Eggblog before 3.07 allows remote attackers to execute arbitrary SQL commands via the id parameter.6.4
  7. CVE-2006-0349SQL injection vulnerability in eggblog 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to blog.php.7.5
  8. CVE-2006-0350Cross-site scripting (XSS) vulnerability in eggblog 2.0 allow remote attackers to inject arbitrary web script or HTML via the message field to topic.php.4.3
  9. CVE-2005-4546search.php in eggblog 2.0 allows remote attackers to obtain the full path via an invalid q parameter, as used by the Keyword and Search fields, possibly due to an SQL injection vulnerability.7.8
  10. CVE-2005-4547Cross-site scripting (XSS) vulnerability in home/search.php in eggblog 2.0 allows remote attackers to execute arbitrary SQL commands via the q parameter, as used by the Keyword and Search fields.4.3

The record

Peak rank
#18 in Jun 2006
Busiest month shown
Jun 2006, 5 CVEs
Months with a KEV entry
0 since Dec 2005
Monthly snapshots
4 since 2005
Epic-designs's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store