Skip to content
Noroxi

cpaint records

4 published records for vendor cpaint.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      4 records
      • CVE-2005-2625
        31Monitor

        Incomplete blacklist vulnerability in the checkBlacklist function in CPAINT allows remote attackers to execute arbitrary commands via the (1

        HighCVSS 7.5No exploitEPSS 2%

        cpaint · cpaintAug 19, 2005

      • CVE-2005-2613
        25Monitor

        Unknown vulnerability in CPAINT Ajax Toolkit before 1.3-SP allows attackers to execute arbitrary PHP or ASP code or read files via unknown v

        MediumCVSS 6.4No exploitEPSS 1%

        cpaint · cpaintAug 17, 2005

      • CVE-2005-2624
        20Monitor

        Eval injection vulnerability in CPAINT 1.3-SP allows remote attackers to execute arbitrary ASP code via the cpaint_argument[] parameter to (

        MediumCVSS 5.0No exploitEPSS 1%

        cpaint · cpaintAug 19, 2005

      • CVE-2006-0650
        18Monitor

        Cross-site scripting (XSS) vulnerability in cpaint2.inc.php in the CPAINT library before 2.0.3, as used in multiple scripts, allows remote a

        MediumCVSS 4.3Proof of conceptEPSS 2%

        cpaint · cpaintFeb 13, 2006