Fusionzone develops a focused portfolio of web-based marketplace and classifieds platforms including CouponZone, ClassifiedZone, and RealEstateZone. The observed vulnerability surface centers on these application-layer products, with the recorded weakness taxonomy reflecting general categorization rather than a clearly defined flaw pattern. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fusionzone over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-1489HIGH Multiple SQL injection vulnerabilities in FusionZONE CouponZONE local.cfm in 4.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) companyid, (2) sca | Mar 29, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-1486MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in index.cfm in realestateZONE 4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) bamin, (2) bemin, ( | Mar 29, 2006 | 4.3 | 22 | NO | YES |
CVE-2006-1431MEDIUM Cross-site scripting (XSS) vulnerability in local.cfm in fusionZONE couponZONE 4.2 allows remote attackers to inject arbitrary web script or HTML via URL-encoded (1) srchfor and (2 | Mar 28, 2006 | 4.3 | 22 | NO | YES |
CVE-2006-1429MEDIUM Cross-site scripting (XSS) vulnerability in accountlogon.cfm in classifiedZONE 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the rtn parameter. | Mar 28, 2006 | 4.3 | 21 | NO | YES |
CVE-2006-1432MEDIUM fusionZONE couponZONE 4.2 allows remote attackers to obtain the full path of the web server, and other sensitive information, via invalid values, as demonstrated using manipulation | Mar 28, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fusionzone.
Media articles that mention a CVE ID that affects a product developed by Fusionzone — matched by CVE ID, not by vendor name.