Realm-project
4 CVEs tracked since 2008. Since Jun 2008, none of them reached CISA KEV.
Realm-project CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2008-06 | 4 | 0 |
Products
The products that kept showing up in Realm-project's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 4 most recently published vulnerabilities affecting Realm-project.
- CVE-2008-2680Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) CmpctedDB and (2) Boyut...4.3
- CVE-2008-2681Realm CMS 2.3 and earlier allows remote attackers to obtain sensitive information via a direct request to _db/compact.asp, which reveals the database path in an error message.5.0
- CVE-2008-2682_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserN...7.5
- CVE-2008-2679SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the kwrd parameter ...7.5
The record
- Peak rank
- #22 in Jun 2008
- Busiest month shown
- Jun 2008, 4 CVEs
- Months with a KEV entry
- 0 since Jun 2008
- Monthly snapshots
- 1 since 2008