Bizdesign's vulnerability footprint is narrow, centered on its ImageFolio product line. The observed disclosures are characterized by classifications that warrant review against the vendor's specific product documentation; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bizdesign over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-1334MEDIUM Cross-site scripting (XSS) vulnerability in BizDesign ImageFolio 3.01 and earlier allows remote attackers to execute arbitrary web script as other users via (1) the direct paramete | Dec 11, 2002 | 6.8 | 34 | NO | YES |
CVE-2002-1867HIGH The default configuration of BizDesign ImageFolio 2.23 through 2.26 does not control access to (1) admin/setup.cgi, which allows remote attackers to create an administrative accoun | Dec 31, 2002 | 7.5 | 24 | NO | NO |
CVE-2002-1801MEDIUM ImageFolio 2.23 through 2.27 allows remote attackers to obtain sensitive information via a nonexistent image category, which leaks the web root in the resulting error message. | Dec 31, 2002 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bizdesign.
Media articles that mention a CVE ID that affects a product developed by Bizdesign — matched by CVE ID, not by vendor name.