Alphaplug maintains a focused product line centered on the Alphauserpoints application, a niche offering with a modest vulnerability footprint that recurs through application-layer input-handling weaknesses including path traversal and SQL injection. These weakness classes reflect typical risk patterns in web-facing user-management and data-access code. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Alphaplug over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-1476MEDIUM Directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) component 1.5.5 for Joomla! allows remote attackers to read arbitrary files and possibly have unspeci | Apr 19, 2010 | 6.8 | 40 | NO | YES |
CVE-2009-3342HIGH SQL injection vulnerability in frontend/assets/ajax/checkusername.php in the AlphaUserPoints (com_alphauserpoints) component 1.5.2 for Joomla! allows remote attackers to execute ar | Sep 24, 2009 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Alphaplug.
Media articles that mention a CVE ID that affects a product developed by Alphaplug — matched by CVE ID, not by vendor name.