Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Easy Script

First CVE: Jul 17, 2008Active for: 18 yearsTotal CVEs: 21

Easy Script maintains a narrow portfolio of web application products including wiki, forum, blog, and partnership management tools. The vendor's vulnerability footprint, while limited in scope, appears across multiple small consumer and community-oriented applications. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
11
Total CVEs
More Total CVEs than 92% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 47% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Easy Script over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 17, 2008
18 years ago
Most Recent CVE
Jan 7, 2023
1,294 days ago

Products(8 total)

Top CVEs

Signals from CVEs in this vendor scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-3200HIGH
SQL injection vulnerability in vlc_forum.php in Avlc Forum as of 20080715 allows remote attackers to execute arbitrary SQL commands via the id parameter in an affich_message action
Jul 17, 20087.530NOYES
CVE-2008-5322HIGH
Wysi Wiki Wyg 1.0 allows remote attackers to obtain system information via an invalid categup parameter to index.php, which calls the phpinfo function.
Dec 3, 20087.829NOYES
CVE-2008-5065HIGH
TlGuestBook 1.2 allows remote attackers to bypass authentication and gain administrative access by setting the tlGuestBook_login cookie to admin.
Nov 13, 20087.529NOYES
CVE-2008-4783HIGH
tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login cookie to "admin."
Oct 29, 20087.529NOYES
CVE-2008-4781HIGH
Directory traversal vulnerability in update.php in MyKtools 2.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the langage parameter.
Oct 29, 20087.528NOYES
CVE-2008-3388HIGH
Multiple SQL injection vulnerabilities in Def-Blog 1.0.3 allow remote attackers to execute arbitrary SQL commands via the article parameter to (1) comaddok.php and (2) comlook.php.
Jul 30, 20087.528NOYES
CVE-2008-4780MEDIUM
Directory traversal vulnerability in admin/centre.php in MyForum 1.3, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via dir
Oct 29, 20086.827NOYES
CVE-2008-6165MEDIUM
SQL injection vulnerability in gestion.php in CSPartner 0.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the (1) pseudo and (2)
Feb 19, 20096.826NOYES
CVE-2008-3205MEDIUM
Directory traversal vulnerability in index.php in Easy-Script Wysi Wiki Wyg 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the c parameter.
Jul 17, 20085.024NOYES
CVE-2008-5323MEDIUM
Cross-site scripting (XSS) vulnerability in index.php in Wysi Wiki Wyg 1.0 allows remote attackers to inject arbitrary web script or HTML via the s parameter.
Dec 3, 20084.321NOYES
View all 11 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products11 CVEs
45%
55%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network1 (9.1%)
Unknown10 (90.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (9.1%)
High0 (0.0%)
Unknown10 (90.9%)
User Interaction
None1 (9.1%)
Unknown10 (90.9%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (9.1%)
Unknown10 (90.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
10 CVEs
90.9% of CVEs· 85th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Easy Script.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Easy Script — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Easy Script's Products

View all 2 CNAs →

Top CWEs