Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Fuzzylime

First CVE: Sep 11, 2007Active for: 19 yearsTotal CVEs: 10
52.5
VTI Score
TOP TARGET

Fuzzylime's vulnerability profile centers on its content-management system and related web applications, which recur across a narrow but prominent product line and are characterized by application-layer input-handling and path-access weaknesses. The vendor's disclosures frequently acquire public exploit code, reflecting the accessibility and weaponizability of typical CMS flaws such as path traversal, code injection, and cross-site scripting. Defenders should treat Fuzzylime CMS deployments as requiring prompt patching attention when advisories emerge; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
1.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 74% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Fuzzylime over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 11, 2007
18 years ago
Most Recent CVE
Jun 23, 2009
6,240 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-1405MEDIUM
PHP remote file inclusion vulnerability in code/display.php in fuzzylime (cms) 3.01 allows remote attackers to execute arbitrary PHP code via a URL in the admindir parameter.
Mar 20, 20086.846NOYES
CVE-2008-6833HIGH
Directory traversal vulnerability in commsrss.php in fuzzylime (cms) before 3.01b allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in a files
Jun 22, 200910.038NOYES
CVE-2008-6834HIGH
Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.01 and 3.01a allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the s p
Jun 22, 200910.036NOYES
CVE-2009-2176HIGH
Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local
Jun 23, 20097.531NOYES
CVE-2007-4805HIGH
Directory traversal vulnerability in getgalldata.php in fuzzylime (cms) 3.0 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) in the p paramet
Sep 11, 20077.531NOYES
CVE-2008-3164HIGH
Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a
Jul 14, 20087.629NOYES
CVE-2009-2177MEDIUM
code/display.php in fuzzylime (cms) 3.03a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to conduct directory traversal attacks and overwrite arbitrary fil
Jun 23, 20096.828NOYES
CVE-2008-5291HIGH
Directory traversal vulnerability in code/track.php in FuzzyLime 3.03 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the
Dec 1, 20087.528NOYES
CVE-2008-3165MEDIUM
Directory traversal vulnerability in rss.php in fuzzylime (cms) 3.01a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local
Jul 14, 20086.827NOYES
CVE-2008-3098MEDIUM
Cross-site scripting (XSS) vulnerability in admin/usercheck.php in fuzzylime (cms) before 3.03 allows remote attackers to inject arbitrary web script or HTML via the user parameter
Sep 24, 20084.321NOYES
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
40%
60%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown10 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown10 (100.0%)
User Interaction
None0 (0.0%)
Unknown10 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown10 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
10 CVEs
100.0% of CVEs· 85th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Fuzzylime.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Fuzzylime — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Fuzzylime's Products

View all 1 CNAs →

Top CWEs