yourfreeworld records
30 published records for vendor yourfreeworld.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 24
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')21
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-20 Improper Input Validation1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
30 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2008-4886Proof of concept | SQL injection vulnerability in index.php in YourFreeWorld Shopping Cart Script allows remote attackers to execute arbitrary SQL commands viayourfreeworld · shopping cart script · CWE-89 | High7.5 | — | 2.4% | Nov 3, 2008 |
31Monitor | CVE-2008-1919Proof of concept | SQL injection vulnerability in listtest.php in YourFreeWorld Apartment Search Script allows remote attackers to execute arbitrary SQL commanyourfreeworld · apartment search script · CWE-89 | High7.5 | — | 2.0% | Apr 23, 2008 |
31Monitor | CVE-2006-6461No exploit | tr1.php in Yourfreeworld Stylish Text Ads Script allows remote attackers to obtain the installation path via an invalid id parameter, which yourfreeworld · stylish text ads script | High7.8 | — | 1.6% | Dec 11, 2006 |
30Monitor | CVE-2008-3757No exploit | SQL injection vulnerability in tr1.php in YourFreeWorld Forced Matrix Script allows remote attackers to execute arbitrary SQL commands via tyourfreeworld · forced matrix script · CWE-89 | High7.5 | — | 1.3% | Aug 21, 2008 |
30Monitor | CVE-2008-3751No exploit | SQL injection vulnerability in tr.php in YourFreeWorld Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQL commayourfreeworld · short url and url tracker script · CWE-89 | High7.5 | — | 1.3% | Aug 21, 2008 |
30Monitor | CVE-2008-3749Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Banner Management Script allows remote attackers to execute arbitrary SQL commands viyourfreeworld · banner management script · CWE-89 | High7.5 | — | 1.2% | Aug 21, 2008 |
30Monitor | CVE-2008-3753No exploit | SQL injection vulnerability in details.php in YourFreeWorld Programs Rating Script allows remote attackers to execute arbitrary SQL commandsyourfreeworld · programs rating script · CWE-89 | High7.5 | — | 1.2% | Aug 21, 2008 |
30Monitor | CVE-2008-3755Proof of concept | SQL injection vulnerability in view.php in YourFreeWorld Classifieds Script allows remote attackers to execute arbitrary SQL commands via thyourfreeworld · classifieds · CWE-89 | High7.5 | — | 1.1% | Aug 21, 2008 |
30Monitor | CVE-2008-3756Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Viral Marketing Script allows remote attackers to execute arbitrary SQL commands via yourfreeworld · viral marketing script · CWE-89 | High7.5 | — | 1.1% | Aug 21, 2008 |
30Monitor | CVE-2006-2509No exploit | SQL injection vulnerability in login.php in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQyourfreeworld · short url and url tracker script | High7.5 | — | 1.1% | May 22, 2006 |
30Monitor | CVE-2008-4895Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Downline Builder allows remote attackers to execute arbitrary SQL commands via the idyourfreeworld · downline builder script · CWE-89 | High7.5 | — | 1.1% | Nov 3, 2008 |
30Monitor | CVE-2008-4885Proof of concept | SQL injection vulnerability in tr1.php in YourFreeWorld Scrolling Text Ads Script allows remote attackers to execute arbitrary SQL commands yourfreeworld · scrolling text ads script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-4883Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Blog Blaster Script allows remote attackers to execute arbitrary SQL commands via theyourfreeworld · blog blaster script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-3725Proof of concept | SQL injection vulnerability in trr.php in YourFreeWorld Ad Board Script allows remote attackers to execute arbitrary SQL commands via the idyourfreeworld · ad board script · CWE-89 | High7.5 | — | 1.0% | Aug 20, 2008 |
30Monitor | CVE-2010-4981Proof of concept | SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitrary SQL commands viayourfreeworld · banner management · CWE-89 | High7.5 | — | 1.0% | Nov 1, 2011 |
30Monitor | CVE-2008-3750Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld URL Rotator Script allows remote attackers to execute arbitrary SQL commands via the yourfreeworld · url rotator script · CWE-89 | High7.5 | — | 1.0% | Aug 21, 2008 |
30Monitor | CVE-2008-4900Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Blaster Script allows remote attackers to execute arbitrary SQL commands yourfreeworld · classifieds blaster script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-4882Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Autoresponder Hosting Script allows remote attackers to execute arbitrary SQL commandyourfreeworld · autoresponder hosting script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-3752Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Ad-Exchange Script allows remote attackers to execute arbitrary SQL commands via the yourfreeworld · ad-exchange script · CWE-89 | High7.5 | — | 1.0% | Aug 21, 2008 |
30Monitor | CVE-2008-4881Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Reminder Service Script allows remote attackers to execute arbitrary SQL commands viayourfreeworld · reminder service script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-4884Proof of concept | SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Hosting Script allows remote attackers to execute arbitrary SQL commands yourfreeworld · classifieds hosting script · CWE-89 | High7.5 | — | 1.0% | Nov 3, 2008 |
30Monitor | CVE-2008-2065Proof of concept | SQL injection vulnerability in jokes.php in YourFreeWorld Jokes Site Script allows remote attackers to execute arbitrary SQL commands via thyourfreeworld · jokes site script · CWE-89 | High7.5 | — | 1.0% | May 2, 2008 |
30Monitor | CVE-2008-3754Proof of concept | SQL injection vulnerability in trl.php in YourFreeWorld Stylish Text Ads Script allows remote attackers to execute arbitrary SQL commands viyourfreeworld · stylish text ads script · CWE-89 | High7.5 | — | 1.0% | Aug 21, 2008 |
28Monitor | CVE-2008-6684No exploit | Unrestricted file upload vulnerability in editimage.php in Apartment Search Script allows remote attackers to execute arbitrary code by uployourfreeworld · apartment search script · CWE-20 | Medium6.8 | — | 2.6% | Apr 10, 2009 |
27Monitor | CVE-2006-2510No exploit | Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackyourfreeworld · short url and url tracker script | Medium6.8 | — | 1.3% | May 22, 2006 |
- CVE-2008-488631Monitor
SQL injection vulnerability in index.php in YourFreeWorld Shopping Cart Script allows remote attackers to execute arbitrary SQL commands via
HighCVSS 7.5Proof of conceptEPSS 2%yourfreeworld · shopping cart scriptNov 3, 2008
- CVE-2008-191931Monitor
SQL injection vulnerability in listtest.php in YourFreeWorld Apartment Search Script allows remote attackers to execute arbitrary SQL comman
HighCVSS 7.5Proof of conceptEPSS 2%yourfreeworld · apartment search scriptApr 23, 2008
- CVE-2006-646131Monitor
tr1.php in Yourfreeworld Stylish Text Ads Script allows remote attackers to obtain the installation path via an invalid id parameter, which
HighCVSS 7.8No exploitEPSS 2%yourfreeworld · stylish text ads scriptDec 11, 2006
- CVE-2008-375730Monitor
SQL injection vulnerability in tr1.php in YourFreeWorld Forced Matrix Script allows remote attackers to execute arbitrary SQL commands via t
HighCVSS 7.5No exploitEPSS 1%yourfreeworld · forced matrix scriptAug 21, 2008
- CVE-2008-375130Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQL comma
HighCVSS 7.5No exploitEPSS 1%yourfreeworld · short url and url tracker scriptAug 21, 2008
- CVE-2008-374930Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Banner Management Script allows remote attackers to execute arbitrary SQL commands vi
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · banner management scriptAug 21, 2008
- CVE-2008-375330Monitor
SQL injection vulnerability in details.php in YourFreeWorld Programs Rating Script allows remote attackers to execute arbitrary SQL commands
HighCVSS 7.5No exploitEPSS 1%yourfreeworld · programs rating scriptAug 21, 2008
- CVE-2008-375530Monitor
SQL injection vulnerability in view.php in YourFreeWorld Classifieds Script allows remote attackers to execute arbitrary SQL commands via th
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · classifiedsAug 21, 2008
- CVE-2008-375630Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Viral Marketing Script allows remote attackers to execute arbitrary SQL commands via
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · viral marketing scriptAug 21, 2008
- CVE-2006-250930Monitor
SQL injection vulnerability in login.php in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQ
HighCVSS 7.5No exploitEPSS 1%yourfreeworld · short url and url tracker scriptMay 22, 2006
- CVE-2008-489530Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Downline Builder allows remote attackers to execute arbitrary SQL commands via the id
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · downline builder scriptNov 3, 2008
- CVE-2008-488530Monitor
SQL injection vulnerability in tr1.php in YourFreeWorld Scrolling Text Ads Script allows remote attackers to execute arbitrary SQL commands
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · scrolling text ads scriptNov 3, 2008
- CVE-2008-488330Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Blog Blaster Script allows remote attackers to execute arbitrary SQL commands via the
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · blog blaster scriptNov 3, 2008
- CVE-2008-372530Monitor
SQL injection vulnerability in trr.php in YourFreeWorld Ad Board Script allows remote attackers to execute arbitrary SQL commands via the id
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · ad board scriptAug 20, 2008
- CVE-2010-498130Monitor
SQL injection vulnerability in trackads.php in YourFreeWorld Banner Management allows remote attackers to execute arbitrary SQL commands via
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · banner managementNov 1, 2011
- CVE-2008-375030Monitor
SQL injection vulnerability in tr.php in YourFreeWorld URL Rotator Script allows remote attackers to execute arbitrary SQL commands via the
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · url rotator scriptAug 21, 2008
- CVE-2008-490030Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Blaster Script allows remote attackers to execute arbitrary SQL commands
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · classifieds blaster scriptNov 3, 2008
- CVE-2008-488230Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Autoresponder Hosting Script allows remote attackers to execute arbitrary SQL command
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · autoresponder hosting scriptNov 3, 2008
- CVE-2008-375230Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Ad-Exchange Script allows remote attackers to execute arbitrary SQL commands via the
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · ad-exchange scriptAug 21, 2008
- CVE-2008-488130Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Reminder Service Script allows remote attackers to execute arbitrary SQL commands via
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · reminder service scriptNov 3, 2008
- CVE-2008-488430Monitor
SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Hosting Script allows remote attackers to execute arbitrary SQL commands
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · classifieds hosting scriptNov 3, 2008
- CVE-2008-206530Monitor
SQL injection vulnerability in jokes.php in YourFreeWorld Jokes Site Script allows remote attackers to execute arbitrary SQL commands via th
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · jokes site scriptMay 2, 2008
- CVE-2008-375430Monitor
SQL injection vulnerability in trl.php in YourFreeWorld Stylish Text Ads Script allows remote attackers to execute arbitrary SQL commands vi
HighCVSS 7.5Proof of conceptEPSS 1%yourfreeworld · stylish text ads scriptAug 21, 2008
- CVE-2008-668428Monitor
Unrestricted file upload vulnerability in editimage.php in Apartment Search Script allows remote attackers to execute arbitrary code by uplo
MediumCVSS 6.8No exploitEPSS 3%yourfreeworld · apartment search scriptApr 10, 2009
- CVE-2006-251027Monitor
Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attack
MediumCVSS 6.8No exploitEPSS 1%yourfreeworld · short url and url tracker scriptMay 22, 2006