Hotscripts
8 CVEs tracked since 2007. Since Aug 2007, none of them reached CISA KEV.
Hotscripts CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2007-08 | 1 | 0 |
| 2007-09 | null or fewer | |
| 2007-10 | null or fewer | |
| 2007-11 | 1 | 0 |
| 2007-12 | 1 | 0 |
| 2008-01 | null or fewer | |
| 2008-02 | null or fewer | |
| 2008-03 | 1 | 0 |
| 2008-04 | null or fewer | |
| 2008-05 | 1 | 0 |
| 2008-06 | null or fewer | |
| 2008-07 | null or fewer | |
| 2008-08 | 3 | 0 |
Products
The products that kept showing up in Hotscripts's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 8 most recently published vulnerabilities affecting Hotscripts.
- CVE-2008-3710Multiple directory traversal vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) script_path p...5.1
- CVE-2008-3709Multiple cross-site scripting (XSS) vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to inject arbitrary web script or HTML via the (1) lOptionsOptions, (2) lNavAdminOptions, or (3)...4.3
- CVE-2008-3707Multiple PHP remote file inclusion vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to execute arbitrary PHP code via a URL in the script_path parameter to (1) flat_read.php, (2) po...7.5
- CVE-2008-2491SQL injection vulnerability in adv_cat.php in AbleSpace 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.7.5
- CVE-2008-1565Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phpEx parameter.7.5
- CVE-2007-6603Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the administrator username and password via a direct request to ...5.0
- CVE-2007-6084SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
- CVE-2007-4371Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrary PHP files in uploads/.6.8
The record
- Peak rank
- #26 in Aug 2008
- Busiest month shown
- Aug 2008, 3 CVEs
- Months with a KEV entry
- 0 since Aug 2007
- Monthly snapshots
- 6 since 2007