CVE Tools

Mrcgiguy

5 CVEs tracked since 2009. Since Jun 2009, none of them reached CISA KEV.

Mrcgiguy CVEs per month

Jun 2009 to Dec 2010. Point at a month, or focus the strip and use the arrow keys.
Mrcgiguy CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2009-0610
2009-0710
2009-08null or fewer
2009-09null or fewer
2009-10null or fewer
2009-11null or fewer
2009-12null or fewer
2010-01null or fewer
2010-02null or fewer
2010-03null or fewer
2010-04null or fewer
2010-05null or fewer
2010-06null or fewer
2010-07null or fewer
2010-08null or fewer
2010-09null or fewer
2010-10null or fewer
2010-11null or fewer
2010-1230

Products

The products that kept showing up in Mrcgiguy's monthly top three, with their CVEs summed over those months.

  1. Freeticket21 month
  2. The Ticket System22 months
  3. Guestbook11 month

Latest CVEs

The 8 most recently published vulnerabilities affecting Mrcgiguy.

  1. CVE-2010-4500Multiple SQL injection vulnerabilities in contact.php in MRCGIGUY (MCG) FreeTicket 1.0.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) nam...6.8
  2. CVE-2010-4363Multiple SQL injection vulnerabilities in contact.php in MRCGIGUY (MCG) FreeTicket 1.0.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id ...6.8
  3. CVE-2010-4358Multiple cross-site scripting (XSS) vulnerabilities in gb.cgi in MRCGIGUY (MCG) Guestbook 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, (3) website,...4.3
  4. CVE-2008-7121Cross-site scripting (XSS) vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the search bar.4.3
  5. CVE-2008-7120SQL injection vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to execute arbitrary SQL commands via the news.php parameter.7.5
  6. CVE-2009-2639SQL injection vulnerability in admin.php in MRCGIGUY The Ticket System 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewticket action.7.5
  7. CVE-2009-2080admin.php in MRCGIGUY The Ticket System 2.0 does not properly restrict access, which allows remote attackers to (1) obtain sensitive configuration information via the editconfig action or (2) chang...7.5
  8. CVE-2006-7086The (1) dlback.php and (2) dlback.cgi scripts in Hot Links allow remote attackers to obtain sensitive information and download the database via a direct request with a modified dl parameter.4.3

The record

Peak rank
#37 in Dec 2010
Busiest month shown
Dec 2010, 3 CVEs
Months with a KEV entry
0 since Jun 2009
Monthly snapshots
3 since 2009
Mrcgiguy's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store