Bwired appears as a niche vendor with a focused product portfolio, where its vulnerability disclosures center on the Bwired product itself and exhibit a durable signal around web-application input-handling defects, specifically cross-site scripting weaknesses. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bwired over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3976HIGH SQL injection vulnerability in index.php in bwired allows remote attackers to execute arbitrary SQL commands via the newsID parameter. | Jul 25, 2007 | 7.5 | 28 | NO | YES |
CVE-2007-3977MEDIUM Cross-site scripting (XSS) vulnerability in bwired allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Jul 25, 2007 | 4.3 | 21 | NO | YES |
CVE-2007-3978MEDIUM Session fixation vulnerability in bwired allows remote attackers to hijack web sessions by setting the PHPSESSID parameter. | Jul 25, 2007 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bwired.
Media articles that mention a CVE ID that affects a product developed by Bwired — matched by CVE ID, not by vendor name.