Skip to content
Noroxi

hotwebscripts records

8 published records for vendor hotwebscripts.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
6
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    8 records
    • CVE-2006-3135
      31Monitor

      Multiple SQL injection vulnerabilities in CMS Mundo 1.0 build 008, and possibly other versions, allow remote attackers to execute arbitrary

      HighCVSS 7.5No exploitEPSS 2%

      hotwebscripts · cms mundoJul 13, 2006

    • CVE-2006-2911
      30Monitor

      SQL injection vulnerability in controlpanel/index.php in CMS Mundo before 1.0 build 008 allows remote attackers to execute arbitrary SQL com

      HighCVSS 7.5No exploitEPSS 1%

      hotwebscripts · cms mundoJun 21, 2006

    • CVE-2010-4703
      30Monitor

      SQL injection vulnerability in default.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the

      HighCVSS 7.5No exploitEPSS 1%

      hotwebscripts · hotweb rentalsJan 20, 2011

    • CVE-2010-4737
      30Monitor

      SQL injection vulnerability in resorts.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the

      HighCVSS 7.5Proof of conceptEPSS 1%

      hotwebscripts · hotweb rentalsFeb 15, 2011

    • CVE-2009-3343
      30Monitor

      SQL injection vulnerability in details.asp in HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the PropId parame

      HighCVSS 7.5Proof of conceptEPSS 1%

      hotwebscripts · hotweb rentalsSep 24, 2009

    • CVE-2006-2684
      23Monitor

      Cross-site scripting (XSS) vulnerability in the search module in CMS Mundo 1.0 allows remote attackers to inject arbitrary web script or HTM

      MediumCVSS 5.8No exploitEPSS 1%

      hotwebscripts · cms mundoMay 31, 2006

    • CVE-2006-2931
      20Monitor

      CMS Mundo before 1.0 build 008 does not properly verify uploaded image files, which allows remote attackers to execute arbitrary PHP code by

      MediumCVSS 5.1No exploitEPSS 2%

      hotwebscripts · cms mundoJun 21, 2006

    • CVE-2006-2820
      17Monitor

      Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML

      MediumCVSS 4.3No exploitEPSS 1%

      hotwebscripts · weblog oggiJun 5, 2006