CVE Tools

Open-solution

9 CVEs tracked since 2005. Since May 2005, none of them reached CISA KEV.

Open-solution CVEs per month

May 2005 to Jun 2007. Point at a month, or focus the strip and use the arrow keys.
Open-solution CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0550
2005-06null or fewer
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-1220
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-0620

Products

The products that kept showing up in Open-solution's monthly top three, with their CVEs summed over those months.

  1. Quick.cart63 months
  2. Quick.forum31 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Open-solution.

  1. CVE-2007-3139config/general.php in Quick.Cart 2.2 and earlier uses a default username and password, which allows remote attackers to access the application via a login action to admin.php. NOTE: this can be le...6.8
  2. CVE-2007-3138Directory traversal vulnerability in index.php in Open Solution Quick.Cart 2.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in an sLanguage co...7.5
  3. CVE-2007-1407Unspecified vulnerability in OpenSolution Quick.Cart before 2.1 has unknown impact and attack vectors, related to a "low critical exploit."7.5
  4. CVE-2006-6390Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitr...6.8
  5. CVE-2006-6391Multiple directory traversal vulnerabilities in Open Solution Quick.Cart 2.0, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to include arbitrary files vi...6.8
  6. CVE-2005-1585Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory or (2) page parameter to index.php, or (3) iCategory param...7.5
  7. CVE-2005-1587Cross-site scripting (XSS) vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to inject arbitrary web script or HTML via the sWord parameter.4.3
  8. CVE-2005-1584Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary web script or HTML via the topic field in a NewTopic action.4.3
  9. CVE-2005-1588SQL injection vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to execute arbitrary SQL commands via the iCategory parameter. NOTE: the vendor has privately disputed this is...7.5
  10. CVE-2005-1586Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain t...5.0

The record

Peak rank
#27 in May 2005
Busiest month shown
May 2005, 5 CVEs
Months with a KEV entry
0 since May 2005
Monthly snapshots
3 since 2005
Open-solution's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store