Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Maianscriptworld

First CVE: Mar 21, 2006Active for: 20 yearsTotal CVEs: 25
30.8
VTI Score
Low

Maianscriptworld's vulnerability profile centers on a modest line of web-based applications including file uploaders, shopping carts, greeting systems, and search utilities—products typically deployed in shared hosting and small-business environments. The durable signal across its disclosures is a strong tendency toward public exploit availability, paired with recurring input-handling and authentication vulnerabilities characteristic of web applications: cross-site scripting, SQL injection, CSRF, and improper credential validation recur across the product line and often involve exposure of sensitive data. These weakness classes reflect the inherent risks of user-input processing and session management in older PHP-based frameworks, and the exploit-availability pattern suggests the product line has attracted sustained security tool development. Defenders deploying Maianscriptworld products should prioritize input sanitization and parameterized queries, maintain strict access controls, and consider whether modern alternatives offer better security posture; live severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
25
Total CVEs
More Total CVEs than 96% of tracked vendors
0.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 4% of tracked vendors
5.6
Avg CVSS Score
Higher Avg CVSS Score than 22% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Maianscriptworld over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 21, 2006
20 years ago
Most Recent CVE
Oct 7, 2021
1,751 days ago

Products(12 total)

Top CVEs

Signals from CVEs in this vendor scope (25 CVEs).

25 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-32172CRITICAL
Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.
Oct 7, 20219.884NOYES
CVE-2008-7086HIGH
Maian Greetings 2.1 allows remote attackers to bypass authentication and gain administrative privileges by setting the mecard_admin_cookie cookie to admin.
Aug 26, 20097.532NOYES
CVE-2008-3317HIGH
admin/index.php in Maian Search 1.1 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary search_cookie cookie.
Jul 25, 20087.531NOYES
CVE-2008-3321HIGH
admin/index.php in Maian Uploader 4.0 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary uploader_cookie cookie.
Jul 25, 20087.531NOYES
CVE-2006-1334MEDIUM
Multiple SQL injection vulnerabilities in Maian Weblog 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) entry and (2) email parameters to (a) print.php and
Mar 21, 20066.426NOYES
CVE-2008-2202MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter to upload/adm
May 14, 20084.321NOYES
CVE-2014-10004HIGH
SQL injection vulnerability in admin/data_files/move.php in Maian Uploader 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Jan 13, 20157.520NONO
CVE-2008-2203HIGH
SQL injection vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary SQL commands via the keywords parameter in a search action.
May 14, 20087.519NONO
CVE-2008-2205HIGH
SQL injection vulnerability in index.php in Maian Music 1.1 allows remote attackers to execute arbitrary SQL commands via the album parameter in an album action.
May 14, 20087.519NONO
CVE-2008-2208HIGH
SQL injection vulnerability in index.php in Maian Greeting 2.1 allows remote attackers to execute arbitrary SQL commands via the keywords parameter in a search action.
May 14, 20087.519NONO
View all 25 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products25 CVEs
68%
28%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network1 (4.0%)
Unknown24 (96.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (4.0%)
High0 (0.0%)
Unknown24 (96.0%)
User Interaction
None1 (4.0%)
Unknown24 (96.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (4.0%)
Unknown24 (96.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (25 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
4.0% of CVEs· 96th percentile
ExploitDB
6 CVEs
24.0% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Maianscriptworld.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Maianscriptworld — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Maianscriptworld's Products

View all 1 CNAs →

Top CWEs