Dmxready's vulnerability footprint centers on a narrow line of web application and content-management products, including blog management, secure login, site chassis, and registration utilities that serve small to medium web publishers. Its disclosures recur persistently around web-layer input-handling weaknesses—SQL injection and cross-site scripting—that are endemic to application-level parsing and output encoding in dynamically generated pages, and these vulnerabilities frequently acquire public exploit tooling. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dmxready over time
Signals from CVEs in this vendor scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4921HIGH SQL injection vulnerability in inc_pollingboothmanager.asp in DMXReady Polling Booth Manager allows remote attackers to execute arbitrary SQL commands via the QuestionID parameter | Oct 8, 2011 | 7.5 | 32 | NO | YES |
CVE-2010-2342HIGH SQL injection vulnerability in onlinenotebookmanager.asp in DMXReady Online Notebook Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the ItemID parameter. | Jun 21, 2010 | 7.5 | 30 | NO | YES |
CVE-2009-0427HIGH SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Member Directory Manager 1.1 and earlier allows remote attackers to execute arbitrary SQL comma | Feb 5, 2009 | 7.5 | 29 | NO | YES |
CVE-2009-0339HIGH SQL injection vulnerability in inc_webblogmanager.asp in DMXReady Blog Manager allows remote attackers to execute arbitrary SQL commands via the itemID parameter in a view action. | Jan 29, 2009 | 7.5 | 29 | NO | YES |
CVE-2006-6816HIGH Multiple SQL injection vulnerabilities in DMXReady Secure Login Manager 1.0 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) set_preferenc | Dec 29, 2006 | 7.5 | 29 | NO | YES |
CVE-2009-0428HIGH SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Secure Document Library 1.1 and earlier allows remote attackers to execute arbitrary SQL comman | Feb 5, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-0426HIGH SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Classified Listings Manager 1.1 and earlier allows remote attackers to execute arbitrary SQL co | Feb 5, 2009 | 7.5 | 28 | NO | YES |
CVE-2006-7118HIGH SQL injection vulnerability in index.asp in DMXReady Site Engine Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the mid parameter. | Mar 6, 2007 | 7.5 | 28 | NO | YES |
CVE-2009-2238MEDIUM Unrestricted file upload vulnerability in includes/shared_scripts/wysiwyg_editor/assetmanager/assetmanager.asp in DMXReady Registration Manager 1.1 allows remote attackers to execu | Jun 27, 2009 | 6.8 | 27 | NO | YES |
CVE-2004-2189HIGH SQL injection vulnerability in DMXReady Site Chassis Manager allows remote attackers to execute arbitrary SQL commands via unknown vectors. | Dec 31, 2004 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (15 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dmxready.
Media articles that mention a CVE ID that affects a product developed by Dmxready — matched by CVE ID, not by vendor name.