Artmedic Webdesign develops a modestly represented suite of web content management and publishing products—including a CMS, link management, newsletter, weblog, and event platform—that operate across a small product footprint. The vendor's vulnerabilities concentrate in web application layer weakness classes, notably path traversal, code injection, and cross-site scripting, and frequently acquire public exploit tooling. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Artmedic Webdesign over time
Signals from CVEs in this vendor scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-5489HIGH Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page p | Oct 17, 2007 | 7.5 | 28 | NO | YES |
CVE-2007-5600MEDIUM Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, ( | Oct 19, 2007 | 6.8 | 27 | NO | YES |
CVE-2006-2119MEDIUM PHP remote file inclusion vulnerability in event/index.php in Artmedic Event allows remote attackers to execute arbitrary code via a URL in the page parameter. | May 1, 2006 | 5.0 | 24 | NO | YES |
CVE-2006-2608MEDIUM artmedic newsletter 4.1 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the logf | May 26, 2006 | 5.1 | 23 | NO | YES |
CVE-2008-0798MEDIUM Multiple directory traversal vulnerabilities in artmedic webdesign weblog 1.0, when magic_quotes_gpc is disabled, allow remote attackers to read arbitrary files via a .. (dot dot) | Feb 15, 2008 | 4.3 | 21 | NO | YES |
CVE-2006-4905HIGH PHP remote file inclusion vulnerability in index.php in Artmedic Links 5.0 allows remote attackers to execute arbitrary PHP code via a URL in the id parameter, which is processed b | Sep 21, 2006 | 7.5 | 20 | NO | NO |
CVE-2004-0624HIGH PHP remote file inclusion vulnerability in index.php for Artmedic links 5.0 (artmedic_links5) allows remote attackers to execute arbitrary PHP code by modifying the id parameter to | Dec 6, 2004 | 7.5 | 19 | NO | NO |
CVE-2008-0765MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in artmedic webdesign weblog allow remote attackers to inject arbitrary web script or HTML via the (1) date parameter to artmedi | Feb 13, 2008 | 4.3 | 16 | NO | NO |
CVE-2006-2609MEDIUM artmedic newsletter 4.1.2 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the em | May 26, 2006 | 5.1 | 15 | NO | NO |
Signals from CVEs in this vendor scope (9 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Artmedic Webdesign.
Media articles that mention a CVE ID that affects a product developed by Artmedic Webdesign — matched by CVE ID, not by vendor name.