Derek Leung's vulnerability footprint centers on a narrowly scoped product, pslash, where the observed weakness classes include code injection and related control-flow concerns. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Derek Leung over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-4373HIGH PHP remote file inclusion vulnerability in modules/visitors2/include/config.inc.php in pSlash 0.70 allows remote attackers to execute arbitrary PHP code via a URL in the lvc_includ | Aug 26, 2006 | 7.5 | 29 | NO | YES |
CVE-2001-1235HIGH pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir var | Oct 2, 2001 | 7.5 | 21 | NO | NO |
CVE-2007-5014HIGH Multiple PHP remote file inclusion vulnerabilities in pSlash 0.70 allow remote attackers to execute arbitrary PHP code via a URL in (1) the lvc_admin_dir parameter to modules/visit | Sep 20, 2007 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Derek Leung.
Media articles that mention a CVE ID that affects a product developed by Derek Leung — matched by CVE ID, not by vendor name.