CVE Tools

Prozilla

11 CVEs tracked since 2004. Since Dec 2004, none of them reached CISA KEV.

Prozilla CVEs per month

Dec 2004 to Apr 2008. Point at a month, or focus the strip and use the arrow keys.
Prozilla CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2004-1210
2005-01null or fewer
2005-02null or fewer
2005-03null or fewer
2005-04null or fewer
2005-05null or fewer
2005-06null or fewer
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-1010
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-0820
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-0470

Products

The products that kept showing up in Prozilla's monthly top three, with their CVEs summed over those months.

  1. Prozilla Download Accelerator22 months
  2. Cheats11 month
  3. Entertainers11 month
  4. Forum11 month
  5. Prozilla Pub Site Directory11 month
  6. Webring11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Prozilla.

  1. CVE-2008-6115SQL injection vulnerability in directory.php in Prozilla Hosting Index allows remote attackers to execute arbitrary SQL commands via the id parameter in a deadlink action, a different vector than C...7.5
  2. CVE-2008-2083SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a li...6.8
  3. CVE-2008-1864SQL injection vulnerability in project.php in Prozilla Freelancers allows remote attackers to execute arbitrary SQL commands via the project parameter.7.5
  4. CVE-2008-1863SQL injection vulnerability in view_reviews.php in Prozilla Cheat Script (aka Cheats) 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  5. CVE-2008-1788SQL injection vulnerability in directory.php in Prozilla Entertainers 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: some of these details a...7.5
  6. CVE-2008-1789SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter.6.8
  7. CVE-2008-1783Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/DeleteUser.php.6.4
  8. CVE-2008-1785delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s parameter.5.5
  9. CVE-2008-1784Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3) uidx.php in siteadmin/.7.5
  10. CVE-2007-4362SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.6.8
  11. CVE-2007-4258SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via the cat parameter.7.5
  12. CVE-2007-3809Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other un...7.5
  13. CVE-2005-2961Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response...7.5
  14. CVE-2005-0523Format string vulnerability in ProZilla 1.3.7.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the Location header.7.5
  15. CVE-2004-1120Multiple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c and other code that handles network protocols in ProZilla 1.3.6-r2 and earlier allow remote servers to execute arbitrary code vi...10.0

The record

Peak rank
#10 in Apr 2008
Busiest month shown
Apr 2008, 7 CVEs
Months with a KEV entry
0 since Dec 2004
Monthly snapshots
4 since 2004
Prozilla's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store