Discountedscripts maintains a narrowly scoped portfolio of web-facing applications and scripts, including its ACG PTP product and e-gold script shop tools, where vulnerabilities cluster around application-layer input handling. The recurring weakness classes—SQL injection and cross-site scripting—reflect the characteristic risks of web applications that process and reflect user-supplied data without adequate sanitization. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Discountedscripts over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-4144HIGH SQL injection vulnerability in index.php in ACG-ScriptShop E-Gold Script Shop allows remote attackers to execute arbitrary SQL commands via the cid parameter in a showcat action. | Sep 24, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-3944HIGH SQL injection vulnerability in index.php in ACG-PTP 1.0.6 allows remote attackers to execute arbitrary SQL commands via the adid parameter in an adorder action. | Sep 5, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-3765HIGH SQL injection vulnerability in code.php in Quick Poll Script allows remote attackers to execute arbitrary SQL commands via the id parameter. | Aug 21, 2008 | 7.5 | 28 | NO | YES |
Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in ACG-PTP 1.0.6 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) | Aug 26, 2008 | 3.5 | 13 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Discountedscripts.
Media articles that mention a CVE ID that affects a product developed by Discountedscripts — matched by CVE ID, not by vendor name.