Skip to content
Noroxi

web4future records

8 published records for vendor web4future.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
5
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      8 records
      • CVE-2005-4039
        32Monitor

        Directory traversal vulnerability in arhiva.php in Web4Future Portal Solutions News Portal allows remote attackers to read arbitrary files v

        HighCVSS 7.8Proof of conceptEPSS 4%

        web4future · portal solutionsDec 6, 2005

      • CVE-2005-4034
        31Monitor

        Multiple SQL injection vulnerabilities in Web4Future eDating Professional 5 allow remote attackers to execute arbitrary SQL commands via the

        HighCVSS 7.5Proof of conceptEPSS 2%

        web4future · edating professionalDec 6, 2005

      • CVE-2005-4038
        30Monitor

        SQL injection vulnerability in comentarii.php in Web4Future Portal Solutions News Portal allows remote attackers to execute arbitrary SQL co

        HighCVSS 7.5No exploitEPSS 1%

        web4future · portal solutionsDec 6, 2005

      • CVE-2005-4035
        30Monitor

        Multiple SQL injection vulnerabilities in Web4Future eCommerce Enterprise Edition 2.1 and earlier allow remote attackers to execute arbitrar

        HighCVSS 7.5Proof of conceptEPSS 1%

        web4future · web4future ecommerceDec 6, 2005

      • CVE-2005-4037
        30Monitor

        SQL injection vulnerability in functions.php in Web4Future Affiliate Manager PRO 4.1 and earlier allows remote attackers to execute arbitrar

        HighCVSS 7.5Proof of conceptEPSS 1%

        web4future · affiliate manager professionalDec 6, 2005

      • CVE-2006-2244
        25Monitor

        Multiple SQL injection vulnerabilities in Web4Future News Portal allow remote attackers to execute arbitrary SQL commands via the ID paramet

        MediumCVSS 6.4No exploitEPSS 1%

        web4future · news portalMay 9, 2006

      • CVE-2006-2243
        23Monitor

        Multiple cross-site scripting (XSS) vulnerabilities in Web4Future News Portal allow remote attackers to inject arbitrary web script or HTML

        MediumCVSS 5.8No exploitEPSS 1%

        web4future · news portalMay 9, 2006

      • CVE-2005-4036
        17Monitor

        Cross-site scripting (XSS) vulnerability in index.cgi in Web4Future KeyWord Frequency Counter 1.0 allows remote attackers to inject arbitrar

        MediumCVSS 4.3No exploitEPSS 1%

        web4future · keyword frequency counterDec 6, 2005