CVE Tools

Zanfi-solutions

6 CVEs tracked since 2005. Since Jul 2005, none of them reached CISA KEV.

Zanfi-solutions CVEs per month

Jul 2005 to Sep 2008. Point at a month, or focus the strip and use the arrow keys.
Zanfi-solutions CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0720
2005-08null or fewer
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-0940

Products

The products that kept showing up in Zanfi-solutions's monthly top three, with their CVEs summed over those months.

  1. Zanfi CMS Lite42 months
  2. Autodealers CMS Autonline21 month
  3. Jaw Portal11 month

Latest CVEs

The 6 most recently published vulnerabilities affecting Zanfi-solutions.

  1. CVE-2008-4159SQL injection vulnerability in index.php in Jaw Portal and Zanfi CMS lite and allows remote attackers to execute arbitrary SQL commands via the page (pageid) parameter.7.5
  2. CVE-2008-4158Multiple directory traversal vulnerabilities in index.php in Zanfi CMS lite 1.2 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) flag and (2) inc pa...6.8
  3. CVE-2008-4073SQL injection vulnerability in index.php in Zanfi Autodealers CMS AutOnline allows remote attackers to execute arbitrary SQL commands via the pageid parameter in a DBpAGE action.7.5
  4. CVE-2008-4074SQL injection vulnerability in index.php in Zanfi Autodealers CMS AutOnline allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.7.5
  5. CVE-2004-2195PHP remote file inclusion vulnerability in index.php in Zanfi CMS lite 1.1 allows remote attackers to execute arbitrary PHP code via the inc parameter.5.0
  6. CVE-2004-2196Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) ...5.0

The record

Peak rank
#20 in Sep 2008
Busiest month shown
Sep 2008, 4 CVEs
Months with a KEV entry
0 since Jul 2005
Monthly snapshots
2 since 2005
Zanfi-solutions's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store