Ktorrent is a BitTorrent client application with a narrowly scoped vulnerability footprint centered on input-validation weaknesses in its core product. The observed pattern reflects the parsing demands of peer-to-peer protocol handling; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ktorrent over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-5906MEDIUM Eval injection vulnerability in the web interface plugin in KTorrent before 3.1.4 allows remote attackers to execute arbitrary PHP code via unspecified parameters to this interface | Jan 15, 2009 | 6.8 | 18 | NO | NO |
CVE-2008-5905MEDIUM The web interface plugin in KTorrent before 3.1.4 allows remote attackers to bypass intended access restrictions and upload arbitrary torrent files, and trigger the start of downlo | Jan 15, 2009 | 4.3 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ktorrent.
Media articles that mention a CVE ID that affects a product developed by Ktorrent — matched by CVE ID, not by vendor name.