Acp3 is a niche content management or web application platform with a focused vulnerability footprint centered on its primary product line. The limited disclosures reflect generic or uncategorized input-handling concerns rather than a clearly defined weakness class, making it difficult to anchor a durable defense strategy on structural pattern recognition. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Acp3 over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2577HIGH Multiple SQL injection vulnerabilities in ACP3 4.0 beta 3 allow remote attackers to execute arbitrary SQL commands via (1) the mode parameter to feeds.php, the (2) form[cat] parame | May 9, 2007 | 7.5 | 25 | NO | NO |
CVE-2007-2578HIGH Unspecified vulnerability in search/list/action_search/index.php in ACP3 4.0 beta 3 allows remote attackers to have unknown impact, relating to "Cookie Manipulation", via the form[ | May 9, 2007 | 7.5 | 22 | NO | NO |
CVE-2007-2579MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in ACP3 4.0 beta 3 allow remote attackers to inject arbitrary web script or HTML via (1) the form[mail] parameter to contact/con | May 9, 2007 | 5.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Acp3.
Media articles that mention a CVE ID that affects a product developed by Acp3 — matched by CVE ID, not by vendor name.