CVE Tools

Mhproducts

9 CVEs tracked since 2010. Since Feb 2010, none of them reached CISA KEV.

Mhproducts CVEs per month

Feb 2010 to Sep 2011. Point at a month, or focus the strip and use the arrow keys.
Mhproducts CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2010-0220
2010-03null or fewer
2010-04null or fewer
2010-05null or fewer
2010-06null or fewer
2010-07null or fewer
2010-08null or fewer
2010-09null or fewer
2010-10null or fewer
2010-11null or fewer
2010-1210
2011-01null or fewer
2011-0210
2011-03null or fewer
2011-04null or fewer
2011-05null or fewer
2011-06null or fewer
2011-07null or fewer
2011-08null or fewer
2011-0950

Products

The products that kept showing up in Mhproducts's monthly top three, with their CVEs summed over those months.

  1. Ero Auktion22 months
  2. Download Center11 month
  3. Immo Makler11 month
  4. Mhp Downloadshop11 month
  5. PHP Auktion Pro11 month
  6. Projekt Shop11 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Mhproducts.

  1. CVE-2010-4844SQL injection vulnerability in content.php in MH Products Easy Online Shop allows remote attackers to execute arbitrary SQL commands via the kat parameter.7.5
  2. CVE-2010-4846SQL injection vulnerability in view_item.php in MH Products Pay Pal Shop Digital allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.7.5
  3. CVE-2010-4842SQL injection vulnerability in admin/login.php in MHP DownloadScript (aka MH Products Download Center) 2.2 allows remote attackers to execute arbitrary SQL commands via the Name parameter. NOTE: s...7.5
  4. CVE-2010-4845Multiple SQL injection vulnerabilities in MH Products Projekt Shop allow remote attackers to execute arbitrary SQL commands via the (1) ts parameter to details.php and possibly the (2) ilceler para...7.5
  5. CVE-2010-4847SQL injection vulnerability in view_item.php in MH Products MHP Downloadshop allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.7.5
  6. CVE-2010-4721SQL injection vulnerability in news.php in Immo Makler allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  7. CVE-2010-4614SQL injection vulnerability in item.php in Ero Auktion 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2010-0723.7.5
  8. CVE-2010-0722SQL injection vulnerability in news.php in Php Auktion Pro allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  9. CVE-2010-0723SQL injection vulnerability in news.php in Ero Auktion 2.0 and 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5

The record

Peak rank
#11 in Sep 2011
Busiest month shown
Sep 2011, 5 CVEs
Months with a KEV entry
0 since Feb 2010
Monthly snapshots
4 since 2010
Mhproducts's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store