Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Codetoad

First CVE: Mar 20, 2009Active for: 17 yearsTotal CVEs: 3

Codetoad develops a narrow line of web-application products focused on ASP-based forum and e-commerce solutions, where its vulnerability disclosures have centered on application-layer input-handling issues including cross-site scripting and SQL injection. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
3
Total CVEs
More Total CVEs than 72% of tracked vendors
1.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
5.4
Avg CVSS Score
Higher Avg CVSS Score than 16% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Codetoad over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 20, 2009
17 years ago
Most Recent CVE
Aug 3, 2009
6,201 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (3 CVEs).

3 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-6890HIGH
SQL injection vulnerability in messages.asp in ASP Forum Script allows remote attackers to execute arbitrary SQL commands via the message_id parameter.
Aug 3, 20097.528NOYES
CVE-2008-6891MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in ASP Forum Script allow remote attackers to inject arbitrary web script or HTML via the (1) forum_id parameter to (a) new_mess
Aug 3, 20094.321NOYES
CVE-2008-6500MEDIUM
Cross-site scripting (XSS) vulnerability in CodeToad ASP Shopping Cart Script allows remote attackers to inject arbitrary web script or HTML via the query string to the default URI
Mar 20, 20094.321NOYES
View all 3 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products3 CVEs
67%
33%
Severity distribution among all CVEs352,719 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown3 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown3 (100.0%)
User Interaction
None0 (0.0%)
Unknown3 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown3 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (3 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
100.0% of CVEs· 85th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Codetoad.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Codetoad — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Codetoad's Products

View all 1 CNAs →

Top CWEs