Contens operates a narrowly scoped product line centered on its primary offering, which has accumulated a small vulnerability footprint in the tracked landscape. The limited disclosures available for this vendor are classified under broad placeholder categories rather than specific weakness patterns, making structural vulnerability analysis difficult at this stage; live counts and detailed exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Contens over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-4389MEDIUM search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) cri | Dec 20, 2005 | 5.0 | 15 | NO | NO |
CVE-2005-4388MEDIUM Cross-site scripting (XSS) vulnerability in search.cfm in CONTENS 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the near parameter. | Dec 20, 2005 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Contens.
Media articles that mention a CVE ID that affects a product developed by Contens — matched by CVE ID, not by vendor name.