6rbscript is a scripting tool with a narrow vulnerability footprint centered on input-handling flaws in its core product, specifically SQL injection and path-traversal weaknesses that reflect insufficient sanitization of user-supplied data. Treat this as a compact vendor profile; current CVE counts, severity, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by 6rbscript over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-4344HIGH SQL injection vulnerability in cat.php in 6rbScript allows remote attackers to execute arbitrary SQL commands via the CatID parameter. | Sep 30, 2008 | 7.5 | 30 | NO | YES |
CVE-2008-6454HIGH SQL injection vulnerability in section.php in 6rbScript 3.3 allows remote attackers to execute arbitrary SQL commands via the singerid parameter in a singers action. | Mar 13, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-6453MEDIUM Directory traversal vulnerability in section.php in 6rbScript 3.3, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the name | Mar 13, 2009 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by 6rbscript.
Media articles that mention a CVE ID that affects a product developed by 6rbscript — matched by CVE ID, not by vendor name.