Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Hinton Design

First CVE: Feb 7, 2006Active for: 20 yearsTotal CVEs: 16
47.8
VTI Score
High

Hinton Design's vulnerability profile centers on a collection of PHP-based web applications including phpht TopSites, phpHD, and related guest-book and status-monitoring tools that serve small- to medium-scale web communities. The recurring exposure reflects the vendor's application tier: input-handling weaknesses dominate, particularly cross-site scripting and SQL injection flaws characteristic of web-facing PHP code, alongside unclassified or placeholder categorizations in the NVD. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
16
Total CVEs
More Total CVEs than 95% of tracked vendors
1.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 75% of tracked vendors
6.8
Avg CVSS Score
Higher Avg CVSS Score than 47% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Hinton Design over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 7, 2006
20 years ago
Most Recent CVE
Apr 18, 2007
7,037 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (16 CVEs).

16 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2006-5458HIGH
PHP remote file inclusion vulnerability in common.php in Hinton Design phpht Topsites allows remote attackers to execute arbitrary PHP code via a URL in the phpht_real_path paramet
Oct 23, 20067.529NOYES
CVE-2006-7091HIGH
PHP remote file inclusion vulnerability in config.php in phpht Topsites FREE 1.022b allows remote attackers to execute arbitrary PHP code via a URL in the fullpath parameter. NOTE
Mar 2, 20077.528NOYES
CVE-2006-0654HIGH
check.php in Hinton Design phpht Topsites 1.3 does not validate passwords when using cookies, which allows remote attackers to bypass authentication via unspecified cookies.
Feb 13, 20067.520NONO
CVE-2006-0602HIGH
Multiple SQL injection vulnerabilities in Hinton Design phphg Guestbook 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) username parameter to check.php or
Feb 8, 20067.520NONO
CVE-2006-0604HIGH
check.php in Hinton Design phphg Guestbook 1.2 does not check the user password when authenticating via cookies, which allows remote attackers to gain unauthorized access.
Feb 8, 20067.520NONO
CVE-2006-0607HIGH
check.php in Hinton Design phphd 1.0 does not check passwords when certain cookies are provided, which allows remote attackers to bypass authentication.
Feb 8, 20067.520NONO
CVE-2007-2096HIGH
PHP remote file inclusion vulnerability in common.php in Hinton Design PHPHD Download System (phphd_downloads) allows remote attackers to execute arbitrary PHP code via a URL in th
Apr 18, 20077.519NONO
CVE-2006-5460HIGH
Multiple PHP remote file inclusion vulnerabilities in Hinton Design phpht Topsites allow remote attackers to execute arbitrary PHP code via a URL in the phpht_real_path parameter t
Oct 23, 20067.519NONO
CVE-2006-0653HIGH
Multiple SQL injection vulnerabilities in Hinton Design phpht Topsites 1.3 allow remote attackers to execute arbitrary SQL commands via multiple vectors including the username para
Feb 13, 20067.519NONO
CVE-2006-0608HIGH
Multiple SQL injection vulnerabilities in Hinton Design phphd 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the username parameter to check.php or (2) unknow
Feb 8, 20067.519NONO
View all 16 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products16 CVEs
25%
75%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown16 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown16 (100.0%)
User Interaction
None0 (0.0%)
Unknown16 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown16 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (16 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
12.5% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Hinton Design.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Hinton Design — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Hinton Design's Products

View all 1 CNAs →

Top CWEs