Skip to content
Noroxi

SocialEngine records

8 published records for vendor socialengine.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

8 records
  • SocialEngine <= 7.8.0 SQL Injection via activity/index/get-memberall

    CriticalCVSS 9.3No exploitEPSS 1%

    socialengine · socialengineApr 23, 2026

  • CVE-2008-6121
    30Monitor

    CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP

    HighCVSS 7.5No exploitEPSS 1%

    socialengine · socialengineFeb 11, 2009

  • CVE-2008-6120
    30Monitor

    SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL co

    HighCVSS 7.5No exploitEPSS 1%

    socialengine · socialengineFeb 11, 2009

  • CVE-2013-4898
    27Monitor

    Unrestricted file upload vulnerability in the user profile page feature in the Timeline Plugin 4.2.5p9 for SocialEngine allows remote authen

    MediumCVSS 6.5Proof of conceptEPSS 3%

    socialengine · socialengineJan 29, 2014

  • CVE-2009-0400
    27Monitor

    SQL injection vulnerability in blog.php in SocialEngine 3.06 trial allows remote attackers to execute arbitrary SQL commands via the categor

    MediumCVSS 6.8Proof of conceptEPSS 1%

    socialengine · socialengineFeb 3, 2009

  • SocialEngine <= 7.8.0 Blind SSRF via /core/link/preview

    MediumCVSS 6.3No exploitEPSS 0%

    socialengine · socialengineApr 23, 2026

  • CVE-2012-6721
    25Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4

    MediumCVSS 6.3No exploitEPSS 0%

    socialengine · socialengineFeb 11, 2020

  • CVE-2012-6720
    24Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HT

    MediumCVSS 6.1No exploitEPSS 1%

    socialengine · socialengineFeb 11, 2020