Datacomponents develops a small collection of web-hosting and site-building products, including tPanel and tSiteBuilder, that serve administrative and content-management functions in shared hosting environments. The vulnerability profile concentrates on SQL injection issues in these management interfaces, reflecting the input-validation demands of web applications handling user-supplied data. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Datacomponents over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-15974CRITICAL tPanel 2009 allows SQL injection for Authentication Bypass via 'or 1=1 or ''=' to login.php. | Oct 29, 2017 | 9.8 | 42 | NO | YES |
CVE-2018-6365CRITICAL SQL Injection exists in TSiteBuilder 1.0 via the id parameter to /site.php, /pagelist.php, or /page_new.php. | Jan 29, 2018 | 9.8 | 41 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Datacomponents.
Media articles that mention a CVE ID that affects a product developed by Datacomponents — matched by CVE ID, not by vendor name.