Alexscriptengine develops a focused set of script-engine and multimedia-processing components, primarily its download and picture engines, that operate as embedded or application-level utilities. The observed vulnerability surface lacks a definitive structural signal, though it warrants monitoring for any recurrence patterns as the vendor's advisory history expands; current exposure counts and severity details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Alexscriptengine over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-1791HIGH SQL injection vulnerability in wall.php in Picture-Engine 1.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. | Mar 31, 2007 | 7.5 | 28 | NO | YES |
CVE-2007-2289HIGH PHP remote file inclusion vulnerability in admin/includes/spaw/dialogs/insert_link.php in download engine (Download-Engine) 1.4.1 allows remote authenticated users to execute arbit | Apr 26, 2007 | 7.5 | 19 | NO | NO |
CVE-2007-2255HIGH Multiple PHP remote file inclusion vulnerabilities in Download-Engine 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) eng_dir parameter to addmember | Apr 25, 2007 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Alexscriptengine.
Media articles that mention a CVE ID that affects a product developed by Alexscriptengine — matched by CVE ID, not by vendor name.