Class 1 maintains a small portfolio of web-based community and engagement products, including forum and polling software, that operate at a narrow scope. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Class 1 over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-2323HIGH Multiple SQL injection vulnerabilities in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allow remote attackers to modify SQL statements via the (1) id par | Jul 19, 2005 | 7.5 | 29 | NO | YES |
CVE-2005-4640HIGH SQL injection vulnerability in index.php in class-1 Poll Software 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) pollid or (2) previouspoll p | Dec 31, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-2902HIGH SQL injection vulnerability in class-1 Forum Software 0.24.4 allows remote attackers to execute arbitrary SQL commands and bypass the file extension check via SQL code in the file | Sep 14, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-2322MEDIUM Cross-site scripting (XSS) vulnerability in Class-1 Forum 0.24.4 and 0.23.2, and Clever Copy with forums installed, allows remote attackers to inject arbitrary web script or HTML v | Jul 19, 2005 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Class 1.
Media articles that mention a CVE ID that affects a product developed by Class 1 — matched by CVE ID, not by vendor name.