CVE Tools

Esoftpro

9 CVEs tracked since 2009. Since Jul 2009, none of them reached CISA KEV.

Esoftpro CVEs per month

Jul 2009 to Nov 2011. Point at a month, or focus the strip and use the arrow keys.
Esoftpro CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2009-0730
2009-08null or fewer
2009-09null or fewer
2009-10null or fewer
2009-11null or fewer
2009-12null or fewer
2010-01null or fewer
2010-02null or fewer
2010-03null or fewer
2010-04null or fewer
2010-05null or fewer
2010-06null or fewer
2010-0730
2010-08null or fewer
2010-09null or fewer
2010-10null or fewer
2010-11null or fewer
2010-12null or fewer
2011-01null or fewer
2011-02null or fewer
2011-03null or fewer
2011-04null or fewer
2011-05null or fewer
2011-06null or fewer
2011-07null or fewer
2011-08null or fewer
2011-09null or fewer
2011-10null or fewer
2011-1130

Products

The products that kept showing up in Esoftpro's monthly top three, with their CVEs summed over those months.

  1. Online Guestbook Pro53 months
  2. Online Contact Manager22 months
  3. Online Photo Pro22 months

Latest CVEs

The 9 most recently published vulnerabilities affecting Esoftpro.

  1. CVE-2010-4996SQL injection vulnerability in ogp_show.php in esoftpro Online Guestbook Pro 5.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.7.5
  2. CVE-2010-5001SQL injection vulnerability in view.php in esoftpro Online Contact Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  3. CVE-2010-4999SQL injection vulnerability in index.php in esoftpro Online Photo Pro 2.0 allows remote attackers to execute arbitrary SQL commands via the section parameter.7.5
  4. CVE-2009-4934Cross-site scripting (XSS) vulnerability in index.php in Online Photo Pro 2.0 allows remote attackers to inject arbitrary web script or HTML via the section parameter.4.3
  5. CVE-2009-4926Multiple cross-site scripting (XSS) vulnerabilities in Online Contact Manager (formerly EContact PRO) 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) showGroup paramet...4.3
  6. CVE-2009-4935SQL injection vulnerability in ogp_show.php in Online Guestbook Pro allows remote attackers to execute arbitrary SQL commands via the display parameter.7.5
  7. CVE-2009-2447Multiple cross-site scripting (XSS) vulnerabilities in ogp_show.php in Online Guestbook Pro 5.1 allow remote attackers to inject arbitrary web script or HTML via the (1) search or (2) display param...4.3
  8. CVE-2009-2448Cross-site scripting (XSS) vulnerability in ogp_show.php in Online Guestbook Pro 5.1 allows remote attackers to inject arbitrary web script or HTML via the search_choice parameter. NOTE: the prove...4.3
  9. CVE-2009-2441Cross-site scripting (XSS) vulnerability in ogp_show.php in Online Guestbook Pro 5.1 allows remote attackers to inject arbitrary web script or HTML via the entry parameter.4.3

The record

Peak rank
#20 in Nov 2011
Busiest month shown
Jul 2009, 3 CVEs
Months with a KEV entry
0 since Jul 2009
Monthly snapshots
3 since 2009
Esoftpro's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store