CVE Tools

Fckeditor

8 CVEs tracked since 2005. Since Mar 2005, none of them reached CISA KEV.

Fckeditor CVEs per month

Mar 2005 to Jul 2009. Point at a month, or focus the strip and use the arrow keys.
Fckeditor CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0310
2005-04null or fewer
2005-05null or fewer
2005-06null or fewer
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-0220
2006-03null or fewer
2006-04null or fewer
2006-0510
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-0210
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-0210
2009-03null or fewer
2009-04null or fewer
2009-05null or fewer
2009-06null or fewer
2009-0720

Products

The products that kept showing up in Fckeditor's monthly top three, with their CVEs summed over those months.

  1. Fckeditor86 months

Latest CVEs

The 8 most recently published vulnerabilities affecting Fckeditor.

  1. CVE-2009-2324Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.4.3
  2. CVE-2009-2265Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable files in arbitrary directories via directory traversal sequences in the input to...7.5
  3. CVE-2008-6178Unrestricted file upload vulnerability in editor/filemanager/browser/default/connectors/php/connector.php in FCKeditor 2.2, as used in Falt4 CMS, Nuke ET, and other products, allows remote attacker...7.5
  4. CVE-2006-6978Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FCKEditor allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouse...4.3
  5. CVE-2006-2529editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote attackers to upload arbitrary file...5.0
  6. CVE-2006-0921Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot ...6.4
  7. CVE-2006-0658Incomplete blacklist vulnerability in connector.php in FCKeditor 2.0 and 2.2, as used in products such as RunCMS, allows remote attackers to upload and execute arbitrary script files by giving the ...5.0
  8. CVE-2005-0613Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to upload arbitrary files.5.0

The record

Peak rank
#58 in Jul 2009
Busiest month shown
Feb 2006, 2 CVEs
Months with a KEV entry
0 since Mar 2005
Monthly snapshots
6 since 2005
Fckeditor's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store