CVE Tools

Scripts-for-sites

17 CVEs tracked since 2008. Since Aug 2008, none of them reached CISA KEV.

Scripts-for-sites CVEs per month

Aug 2008 to May 2009. Point at a month, or focus the strip and use the arrow keys.
Scripts-for-sites CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2008-0810
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-0280
2009-03null or fewer
2009-04null or fewer
2009-0580

Products

The products that kept showing up in Scripts-for-sites's monthly top three, with their CVEs summed over those months.

  1. Affiliate Directory11 month
  2. Ez Adult Directory11 month
  3. Ez Affiliate11 month
  4. Ez Auction11 month
  5. Ez Baby11 month
  6. Ez Biz Pro11 month
  7. Ez E-store11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Scripts-for-sites.

  1. CVE-2008-6808SQL injection vulnerability in links.php in Scripts for Sites (SFS) EZ Link Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  2. CVE-2008-6784SQL injection vulnerability in directory.php in Scripts For Sites (SFS) EZ Adult Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  3. CVE-2008-6781SQL injection vulnerability in directory.php in Sites for Scripts (SFS) Gaming Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  4. CVE-2008-6776SQL injection vulnerability in viewcomments.php in Scripts For Sites (SFS) EZ Hot or Not allows remote attackers to execute arbitrary SQL commands via the phid parameter.7.5
  5. CVE-2008-6780SQL injection vulnerability in directory.php in Scripts for Sites (SFS) SFS EZ Affiliate allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  6. CVE-2008-6782SQL injection vulnerability in directory.php in Sites for Scripts (SFS) EZ Hosting Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  7. CVE-2008-6778SQL injection vulnerability in viewfaqs.php in Scripts for Sites (SFS) EZ Auction allows remote attackers to execute arbitrary SQL commands via the cat parameter.7.5
  8. CVE-2008-6783SQL injection vulnerability in directory.php in Sites for Scripts (SFS) EZ Home Business Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.7.5
  9. CVE-2008-6242SQL injection vulnerability in SearchResults.php in Scripts For Sites (SFS) EZ e-store allows remote attackers to execute arbitrary SQL commands via the where parameter.7.5
  10. CVE-2008-6245SQL injection vulnerability in track.php in Scripts For Sites (SFS) EZ BIZ PRO allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  11. CVE-2008-6247SQL injection vulnerability in topsite.php in Scripts For Sites (SFS) EZ Top Sites allows remote attackers to execute arbitrary SQL commands via the ts parameter.7.5
  12. CVE-2008-6246SQL injection vulnerability in category.php in Scripts For Sites (SFS) EZ Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.7.5
  13. CVE-2008-6244SQL injection vulnerability in view_reviews.php in Scripts for Sites (SFS) EZ Gaming Cheats allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  14. CVE-2008-6237SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.7.5
  15. CVE-2009-0532Cross-site scripting (XSS) vulnerability in password.php in Scripts For Sites (SFS) EZ Baby allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly involvin...4.3

The record

Peak rank
#7 in May 2009
Busiest month shown
Feb 2009, 8 CVEs
Months with a KEV entry
0 since Aug 2008
Monthly snapshots
3 since 2008
Scripts-for-sites's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store