Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Imagevue

First CVE: Feb 15, 2006Active for: 20 yearsTotal CVEs: 5

Imagevue is a focused image gallery and media management application with a narrow product footprint but notable prominence in its niche, with its disclosure history centered on the single Imagevue product itself. Observed vulnerability classes span cross-site scripting and miscellaneous input-handling weaknesses characteristic of web-based media applications. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
5
Total CVEs
More Total CVEs than 83% of tracked vendors
2.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
4.7
Avg CVSS Score
Higher Avg CVSS Score than 8% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Imagevue over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 15, 2006
20 years ago
Most Recent CVE
Mar 10, 2008
6,710 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (5 CVEs).

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2006-0700MEDIUM
imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document that lists folders and their permissions.
Feb 15, 20065.025NOYES
CVE-2006-0701MEDIUM
readfolder.php in imageVue 16.1 allows remote attackers to list directories via modified path and ext parameters.
Feb 15, 20065.025NOYES
CVE-2006-0702MEDIUM
admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the l
Feb 15, 20065.025NOYES
CVE-2008-1273MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in imageVue 1.7 allow remote attackers to inject arbitrary web script or HTML via the path parameter to (1) popup.php, (2) test/
Mar 10, 20084.324NOYES
CVE-2006-0703MEDIUM
Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving the query string that is not quoted when i
Feb 15, 20064.322NOYES
View all 5 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products5 CVEs
100%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
Medium
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown5 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown5 (100.0%)
User Interaction
None0 (0.0%)
Unknown5 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown5 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (5 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
5 CVEs
100.0% of CVEs· 85th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Imagevue.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Imagevue — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Imagevue's Products

View all 1 CNAs →

Top CWEs