Skip to content
Noroxi

d2ksoft records

2 published records for vendor d2ksoft.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      2 records
      • SQL injection vulnerability in D2KBlog 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the memName parameter

        CriticalCVSS 10.0Proof of conceptEPSS 2%

        d2ksoft · d2kblogMar 9, 2006

      • CVE-2006-1122
        28Monitor

        Cross-site scripting (XSS) vulnerability in Default.asp in D2KBlog 1.0.3 and earlier allows remote attackers to inject arbitrary web script

        MediumCVSS 6.8No exploitEPSS 2%

        d2ksoft · d2kblogMar 9, 2006