Kkcald Project maintains a web application framework product where the observed vulnerability pattern centers on client-side and request-handling weaknesses including cross-site request forgery, cross-site scripting, and buffer-boundary issues. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kkcald Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-0510CRITICAL Buffer overflow in epg search result viewer (kkcald) 0.7.19 and earlier allows remote attackers to perform unintended operations or execute DoS (denial of service) attacks via unsp | Feb 1, 2018 | 9.8 | 31 | NO | NO |
CVE-2018-0509HIGH Cross-site request forgery (CSRF) vulnerability in epg search result viewer (kkcald) 0.7.21 and earlier allows an attacker to hijack the authentication of administrators via unspec | Feb 1, 2018 | 8.8 | 26 | NO | NO |
CVE-2018-0508MEDIUM Cross-site scripting vulnerability in epg search result viewer (kkcald) 0.7.21 and earlier allows an attacker to inject arbitrary web script or HTML via unspecified vectors. | Feb 1, 2018 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kkcald Project.
Media articles that mention a CVE ID that affects a product developed by Kkcald Project — matched by CVE ID, not by vendor name.