Azerbaijan Development Group maintains a narrowly scoped vulnerability footprint centered on a small set of consumer-facing applications including its dating and voting platforms. While the vendor's disclosed weaknesses are cataloged under generic placeholder classifications, the associated public tooling and remediation patterns suggest input-validation and application-logic concerns typical of web and mobile applications. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Azerbaijan Development Group over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-1770HIGH Multiple PHP remote file inclusion vulnerabilities in Azerbaijan Design & Development Group (AZDG) AzDGVote allow remote attackers to execute arbitrary PHP code via a URL in the in | Apr 13, 2006 | 10.0 | 40 | NO | YES |
CVE-2005-2951HIGH Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via ".." seq | Sep 16, 2005 | 7.5 | 29 | NO | YES |
CVE-2005-1082HIGH Multiple SQL injection vulnerabilities in AzDGDatingPlatinum 1.1.0 allows remote attackers to execute arbitrary SQL commands via (1) the id parameter to view.php or (2) the from pa | Apr 9, 2005 | 7.5 | 28 | NO | YES |
CVE-2007-3792MEDIUM Multiple PHP remote file inclusion vulnerabilities in AzDG Dating Gold 3.0.5 allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter to (1) header. | Jul 15, 2007 | 4.3 | 25 | NO | YES |
CVE-2005-1081MEDIUM Cross-site scripting (XSS) vulnerability in view.php in AzDGDatingPlatinum 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter. | May 2, 2005 | 4.3 | 21 | NO | YES |
CVE-2004-1911MEDIUM Cross-site scripting (XSS) vulnerability in AzDGDatingLite 2.1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) l parameter (aka language variable) to i | Dec 31, 2004 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Azerbaijan Development Group.
Media articles that mention a CVE ID that affects a product developed by Azerbaijan Development Group — matched by CVE ID, not by vendor name.