CVE Tools

Virtual-hosting-control-system

4 CVEs tracked since 2006. Since Feb 2006, none of them reached CISA KEV.

Virtual-hosting-control-system CVEs per month

Feb 2006 to Feb 2006. Point at a month, or focus the strip and use the arrow keys.
Virtual-hosting-control-system CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2006-0240

Products

The products that kept showing up in Virtual-hosting-control-system's monthly top three, with their CVEs summed over those months.

  1. Virtual Hosting Control System41 month

Latest CVEs

The 8 most recently published vulnerabilities affecting Virtual-hosting-control-system.

  1. CVE-2007-3988Session fixation vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.6.8
  2. CVE-2006-2174Multiple cross-site scripting (XSS) vulnerabilities in admin/server_day_stats.php in Virtual Hosting Control System (VHCS) allow remote attackers to inject arbitrary web script or HTML via the (1) ...4.3
  3. CVE-2006-0686add_user.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not check user privileges when adding a new administrative user, which allows remote attackers to gain unauthorized ac...10.0
  4. CVE-2006-0684change_password.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not verify the old password when a user changes the password, which may allow remote attackers to gain unauthor...7.5
  5. CVE-2006-0685The check_login function in login.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not exit when authentication fails, which allows remote attackers to gain unauthorized access.10.0
  6. CVE-2006-0683Cross-site scripting (XSS) vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 with v.1 patch and earlier allows remote attackers to inject arbitrary web script or HTML via the username,...4.3
  7. CVE-2005-3902Cross-site scripting (XSS) vulnerability in gui/errordocs/index.php in Virtual Hosting Control System (VHCS) 2.2.0 through 2.4.6.2 allows remote attackers to inject arbitrary web script or HTML via...4.3
  8. CVE-2005-1128Multiple SQL injection vulnerabilities in VHCS 2.4 and earlier allow remote attackers to execute arbitrary SQL commands via certain inputs from HTTP POST queries.7.5

The record

Peak rank
#24 in Feb 2006
Busiest month shown
Feb 2006, 4 CVEs
Months with a KEV entry
0 since Feb 2006
Monthly snapshots
1 since 2006
Virtual-hosting-control-system's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store