Includer.Cgi is a narrowly scoped product addressing file-inclusion functionality in web applications, with a vulnerability footprint confined to that specific component. The observed weakness classification is general, reflecting limited historical disclosure detail; live severity, exploitation, and current exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Includer.Cgi over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-0801MEDIUM Directory traversal vulnerability in includer.cgi in The Includer allows remote attackers to read arbitrary files via (1) a .. (dot dot) or (2) a full pathname in the URL. | May 2, 2005 | 5.0 | 15 | NO | NO |
CVE-2005-1355MEDIUM includer.cgi in The Includer allows remote attackers to read arbitrary files via a full pathname in the argument, a similar vulnerability to CVE-2005-0801. | May 2, 2005 | 5.0 | 15 | NO | NO |
CVE-2005-1356MEDIUM Cross-site scripting (XSS) vulnerability in includer.cgi script in The Includer allows remote attackers to inject arbitrary web script or HTML via the argument. | May 2, 2005 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Includer.Cgi.
Media articles that mention a CVE ID that affects a product developed by Includer.Cgi — matched by CVE ID, not by vendor name.