Skip to content
Noroxi

dvbbs records

5 published records for vendor dvbbs.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    5 records
    • CVE-2007-3774
      31Monitor

      Dvbbs 7.1.0 SP1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download

      HighCVSS 7.8No exploitEPSS 1%

      dvbbs · dvbbsJul 15, 2007

    • CVE-2008-5222
      30Monitor

      SQL injection vulnerability in login.asp in Dvbbs 8.2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter

      HighCVSS 7.5Proof of conceptEPSS 1%

      dvbbs · dvbbsNov 25, 2008

    • CVE-2009-4470
      30Monitor

      SQL injection vulnerability in boardrule.php in DVBBS 2.0 allows remote attackers to execute arbitrary SQL commands via the groupboardid par

      HighCVSS 7.5Proof of conceptEPSS 1%

      dvbbs · dvbbsDec 30, 2009

    • CVE-2005-2588
      18Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in DVBBS 7.1 SP2 and earlier allow remote attackers to inject arbitrary web script or HT

      MediumCVSS 4.3Proof of conceptEPSS 2%

      dvbbs · dvbbsAug 17, 2005

    • CVE-2005-2318
      17Monitor

      Cross-site scripting (XSS) vulnerability in showerr.asp in DVBBS 7.1 SP2 allows remote attackers to inject arbitrary web script or HTML via

      MediumCVSS 4.3Proof of conceptEPSS 1%

      dvbbs · dvbbsJul 19, 2005