Aimstats maintains a narrowly scoped analytics product with a minimal vulnerability footprint characterized primarily by miscellaneous or unclassified weakness reports. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aimstats over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2167HIGH Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into config.php via the number parameter in an update action. | Apr 22, 2007 | 7.5 | 52 | NO | YES |
CVE-2007-2168HIGH Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP code into config.php via the databasehost parameter. NOTE: the | Apr 22, 2007 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aimstats.
Media articles that mention a CVE ID that affects a product developed by Aimstats — matched by CVE ID, not by vendor name.