Awffull is a narrowly scoped web application assessment tool with a limited vulnerability history centered on the tool itself. The observed disclosures reflect application-layer assessment software rather than a broad product ecosystem, and recur through generic or unclassified weakness categories. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Awffull over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-0510HIGH Multiple buffer overflows in (1) graphs.c, (2) output.c, and (3) preserve.c in AWFFull 3.7.1 and earlier have unknown impact and attack vectors. NOTE: some of these details are ob | Jan 26, 2007 | 10.0 | 25 | NO | NO |
CVE-2007-3299MEDIUM Cross-site scripting (XSS) vulnerability in AWFFull before 3.7.4, when AllSearchStr (aka the All Search Terms report) is enabled, allows remote attackers to inject arbitrary web sc | Jun 20, 2007 | 4.3 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Awffull.
Media articles that mention a CVE ID that affects a product developed by Awffull — matched by CVE ID, not by vendor name.