Futurenuke's vulnerability footprint centers on its PHP-Nuke Platinum portal and content-management product line, with the durable signal rooted in application-layer code-injection and SQL-injection weaknesses characteristic of dynamic web platforms. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Futurenuke over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-1539HIGH SQL injection vulnerability in includes/dynamic_titles.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary SQL commands via the p parameter to modules.php | Mar 28, 2008 | 7.5 | 28 | NO | YES |
CVE-2007-5676MEDIUM PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary PHP code via a URL in the nuke_bb_ | Oct 24, 2007 | 6.8 | 27 | NO | YES |
CVE-2008-1680MEDIUM PHP-Nuke Platinum 7.6.b.5 allows remote attackers to obtain configuration information via a direct request to maintenance/index.php, which reveals settings such as magic_quotes_gpc | Apr 4, 2008 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Futurenuke.
Media articles that mention a CVE ID that affects a product developed by Futurenuke — matched by CVE ID, not by vendor name.