Kent Web maintains a focused portfolio of web-based application products including forum, reporting, clipboard, note-taking, and collaboration utilities that serve small to medium deployments. The vendor's vulnerability disclosures are modestly represented in the landscape but positioned among more prominent entities relative to its narrow product scope, reflecting the footprint and uptake of these tools across their user base. Specific weakness classes and exploitation patterns are shown in the live panel alongside this summary.
The number and severity of CVEs published that impact products developed by Kent Web over time
Signals from CVEs in this vendor scope (16 CVEs).
16 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-0889HIGH KENT-WEB Joyful Note before 5.3 allows remote attackers to delete files or write to files, and consequently execute arbitrary code, via vectors involving an article. | Feb 28, 2015 | 7.5 | 20 | NO | NO |
CVE-2015-0888MEDIUM KENT-WEB Clip Board before 4.1 allows remote attackers to delete arbitrary files via unspecified vectors. | Feb 28, 2015 | 6.4 | 17 | NO | NO |
CVE-2014-7258MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB Clip Board 2.91 and earlier, when running certain versions of Internet Explorer, allows remote attackers to inject arbitrary we | Dec 5, 2014 | 4.3 | 17 | NO | NO |
CVE-2012-5176MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 5.02 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to tag embedd | Dec 6, 2012 | 4.3 | 17 | NO | NO |
CVE-2012-5175MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB ACCESS REPORT 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to access-log | Dec 6, 2012 | 4.3 | 17 | NO | NO |
CVE-2012-2637MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB WEB PATIO 4.04 and earlier might allow remote attackers to inject arbitrary web script or HTML via a crafted cookie. | Jun 19, 2012 | 4.3 | 17 | NO | NO |
CVE-2012-2636MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB WEB PATIO 4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Jun 19, 2012 | 4.3 | 17 | NO | NO |
CVE-2011-4172MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field o | Oct 24, 2011 | 4.3 | 17 | NO | NO |
CVE-2011-3984MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to "web form entri | Oct 24, 2011 | 4.3 | 17 | NO | NO |
CVE-2011-3983MEDIUM Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to cookies. | Oct 24, 2011 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (16 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kent Web.
Media articles that mention a CVE ID that affects a product developed by Kent Web — matched by CVE ID, not by vendor name.