A Form

Vendor:

First CVE: Nov 3, 2011 · Active for 14 years

2
Total CVEs
More Total CVEs than 49% of tracked products
1.0
Avg CVEs / Year
Bottom 1%
5.8
Avg CVSS
Higher Avg CVSS than 17% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact A Form over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 3, 2011
14 years ago
Most Recent CVE
Sep 12, 2022
1,411 days ago

CVE Severity & Scoring

A Form2 CVEs
All CVEs352,231 CVEs
Medium
Attack Vector
Local0 (0.0%)
Network1 (50.0%)
Unknown1 (50.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (50.0%)
High0 (0.0%)
Unknown1 (50.0%)
User Interaction
None0 (0.0%)
Unknown1 (50.0%)
Required1 (50.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (50.0%)
Unknown1 (50.0%)

Top CVEs

Signals from CVEs in this product scope (2 CVEs).

2 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Cross-site scripting vulnerability in Movable Type plugin A-Form versions prior to 4.1.1 (for Movable Type 7 Series) and versions prior to 3.9.1 (for Movable Type 6 Series) allows
Sep 12, 20226.122NONO
The A-Form and A-Form bamboo before 1.3.6 and 2.x before 2.0.3, and A-Form PC and PC/Mobile before 3.1, plug-ins for Movable Type do not require administrative authentication, whic
Nov 3, 20115.518NONO

Exploit Exposure

Signals from CVEs in this product scope (2 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (2 CVEs).

Media Mentions

Signals from CVEs in this product scope (2 CVEs).

Top CNAs Publishing CVEs For A Form

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.0.215.51.3%00