CVE Tools

Xigla

32 CVEs tracked since 2006. Since Mar 2006, none of them reached CISA KEV.

Xigla CVEs per month

Mar 2006 to Jul 2009. Point at a month, or focus the strip and use the arrow keys.
Xigla CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2006-0330
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-1250
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06130
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-01null or fewer
2009-02null or fewer
2009-03null or fewer
2009-04null or fewer
2009-05null or fewer
2009-06null or fewer
2009-07110

Products

The products that kept showing up in Xigla's monthly top three, with their CVEs summed over those months.

  1. Absolute News Manager.net41 month
  2. Absolute Image Gallery XE32 months
  3. Absolute Banner Manager21 month
  4. Absolute Banner Manager.net22 months
  5. Absolute Form Processor XE21 month
  6. Absolute Content Rotator11 month
  7. Absolute Control Panel XE11 month
  8. Absolute Faq Manager .net11 month
  9. Absolute Live Support XE11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Xigla.

  1. CVE-2008-6854Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  2. CVE-2008-6859Xigla Software Absolute Control Panel XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  3. CVE-2008-6862Absolute Content Rotator 6.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  4. CVE-2008-6860Xigla Software Absolute Poll Manager XE 4.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  5. CVE-2008-6857Absolute Podcast .NET 1.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  6. CVE-2008-6863Xigla Software Absolute Form Processor .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  7. CVE-2008-6856Xigla Software Absolute News Manager.NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  8. CVE-2008-6855Xigla Software Absolute News Feed 1.0 and possibly 1.5 allows remote attackers to bypass authentication and gain administrative access by setting a certain cookie.7.5
  9. CVE-2008-6864Xigla Software Absolute Live Support .NET 5.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  10. CVE-2008-6861Xigla Software Absolute Newsletter 6.0 and 6.1 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  11. CVE-2008-6858Absolute Banner Manager .NET 4.0 allows remote attackers to bypass authentication and gain administrative access by setting a cookie to a certain value.7.5
  12. CVE-2009-1504Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."7.5
  13. CVE-2008-4569SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary SQL commands via the p parameter.7.5
  14. CVE-2008-2766Cross-site scripting (XSS) vulnerability in Xigla Absolute Image Gallery XE allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in (1) admin/search.asp and (2) ga...4.3
  15. CVE-2008-2765SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.7.5

The record

Peak rank
#5 in Jun 2008
Busiest month shown
Jun 2008, 13 CVEs
Months with a KEV entry
0 since Mar 2006
Monthly snapshots
4 since 2006
Xigla's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store