Francisco-burzi
96 CVEs tracked since 2000. Since Oct 2000, none of them reached CISA KEV.
Francisco-burzi CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2000-10 | 1 | 0 |
| 2000-11 | null or fewer | |
| 2000-12 | null or fewer | |
| 2001-01 | null or fewer | |
| 2001-02 | null or fewer | |
| 2001-03 | null or fewer | |
| 2001-04 | 2 | 0 |
| 2001-05 | null or fewer | |
| 2001-06 | null or fewer | |
| 2001-07 | null or fewer | |
| 2001-08 | null or fewer | |
| 2001-09 | 1 | 0 |
| 2001-10 | null or fewer | |
| 2001-11 | 1 | 0 |
| 2001-12 | null or fewer | |
| 2002-01 | null or fewer | |
| 2002-02 | 2 | 0 |
| 2002-03 | 2 | 0 |
| 2002-04 | null or fewer | |
| 2002-05 | 1 | 0 |
| 2002-06 | 3 | 0 |
| 2002-07 | null or fewer | |
| 2002-08 | null or fewer | |
| 2002-09 | null or fewer | |
| 2002-10 | null or fewer | |
| 2002-11 | null or fewer | |
| 2002-12 | null or fewer | |
| 2003-01 | null or fewer | |
| 2003-02 | null or fewer | |
| 2003-03 | null or fewer | |
| 2003-04 | null or fewer | |
| 2003-05 | 2 | 0 |
| 2003-06 | null or fewer | |
| 2003-07 | null or fewer | |
| 2003-08 | null or fewer | |
| 2003-09 | null or fewer | |
| 2003-10 | null or fewer | |
| 2003-11 | null or fewer | |
| 2003-12 | null or fewer | |
| 2004-01 | null or fewer | |
| 2004-02 | null or fewer | |
| 2004-03 | 3 | 0 |
| 2004-04 | null or fewer | |
| 2004-05 | null or fewer | |
| 2004-06 | null or fewer | |
| 2004-07 | 5 | 0 |
| 2004-08 | null or fewer | |
| 2004-09 | 1 | 0 |
| 2004-10 | null or fewer | |
| 2004-11 | null or fewer | |
| 2004-12 | null or fewer | |
| 2005-01 | null or fewer | |
| 2005-02 | 2 | 0 |
| 2005-03 | null or fewer | |
| 2005-04 | 10 | 0 |
| 2005-05 | 25 | 0 |
| 2005-06 | 1 | 0 |
| 2005-07 | 3 | 0 |
| 2005-08 | 5 | 0 |
| 2005-09 | 1 | 0 |
| 2005-10 | 1 | 0 |
| 2005-11 | 1 | 0 |
| 2005-12 | null or fewer | |
| 2006-01 | 1 | 0 |
| 2006-02 | 6 | 0 |
| 2006-03 | null or fewer | |
| 2006-04 | 2 | 0 |
| 2006-05 | null or fewer | |
| 2006-06 | null or fewer | |
| 2006-07 | null or fewer | |
| 2006-08 | null or fewer | |
| 2006-09 | null or fewer | |
| 2006-10 | null or fewer | |
| 2006-11 | 1 | 0 |
| 2006-12 | 2 | 0 |
| 2007-01 | 2 | 0 |
| 2007-02 | 1 | 0 |
| 2007-03 | null or fewer | |
| 2007-04 | null or fewer | |
| 2007-05 | null or fewer | |
| 2007-06 | null or fewer | |
| 2007-07 | null or fewer | |
| 2007-08 | null or fewer | |
| 2007-09 | 1 | 0 |
| 2007-10 | 4 | 0 |
| 2007-11 | null or fewer | |
| 2007-12 | 1 | 0 |
| 2008-01 | 1 | 0 |
| 2008-02 | null or fewer | |
| 2008-03 | 1 | 0 |
Products
The products that kept showing up in Francisco-burzi's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Francisco-burzi.
- CVE-2003-1547Cross-site scripting (XSS) vulnerability in block-Forums.php in the Splatt Forum module for PHP-Nuke 6.x allows remote attackers to inject arbitrary web script or HTML via the subject parameter.4.3
- CVE-2008-0461SQL injection vulnerability in index.php in the Search module in PHP-Nuke 8.0 FINAL and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the...6.8
- CVE-2007-6376Directory traversal vulnerability in autohtml.php in Francisco Burzi PHP-Nuke 8.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the filename parameter, ...7.5
- CVE-2003-1526PHP-Nuke 7.0 allows remote attackers to obtain the installation path via certain characters such as (1) ", (2) ', or (3) > in the search field, which reveals the path in an error message.5.0
- CVE-2003-1468The Web_Links module in PHP-Nuke 6.0 through 6.5 final allows remote attackers to obtain the full web server path via an invalid cid parameter that is non-numeric or null, which leaks the pathname ...4.3
- CVE-2003-1435SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote attackers to execute arbitrary SQL commands via the days parameter to the search module.7.5
- CVE-2003-1400Cross-site scripting (XSS) vulnerability in the Your_Account module for PHP-Nuke 5.0 through 6.0 allows remote attackers to inject arbitrary web script or HTML via the user_avatar parameter.4.3
- CVE-2007-5032Cross-site request forgery (CSRF) vulnerability in admin.php in Francisco Burzi PHP-Nuke allows remote attackers to add administrative accounts via an AddAuthor action with modified add_name and ad...5.1
- CVE-2007-1061SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via ...6.8
- CVE-2007-0372Multiple SQL injection vulnerabilities in Francisco Burzi PHP-Nuke 7.9 allow remote attackers to execute arbitrary SQL commands via (1) the active parameter in admin/modules/modules.php; the (2) ad...7.5
- CVE-2007-0309SQL injection vulnerability in blocks/block-Old_Articles.php in Francisco Burzi PHP-Nuke 7.9 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers ...7.5
- CVE-2006-6234Multiple SQL injection vulnerabilities in the Content module in PHP-Nuke 6.0, and possibly other versions, allow remote attackers to execute arbitrary SQL commands via (1) the cid parameter in a li...7.5
- CVE-2006-6200Multiple SQL injection vulnerabilities in the (1) rate_article and (2) rate_complete functions in modules/News/index.php in the News module in Francisco Burzi PHP-Nuke 7.9 and earlier, when magic_q...7.5
- CVE-2006-5720SQL injection vulnerability in modules/journal/search.php in the Journal module in Francisco Burzi PHP-Nuke 7.9 and earlier allows remote attackers to execute arbitrary SQL commands via the forwhat...7.5
- CVE-2006-1847SQL injection vulnerability in the Your_Account module in PHP-Nuke 7.8 might allows remote attackers to execute arbitrary SQL commands via the user_id parameter in the Your_Home functionality. NOT...7.5
The record
- Peak rank
- #2 in May 2005
- Busiest month shown
- May 2005, 25 CVEs
- Months with a KEV entry
- 0 since Oct 2000
- Monthly snapshots
- 33 since 2000