Mini Nuke is a niche content-management system with a narrow product portfolio centered on its core CMS offering. While the vendor's vulnerability history remains limited in scope, defenders should treat this vendor's disclosures in context of the CMS's deployment footprint and any internet-facing instances. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mini Nuke over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-0199HIGH SQL injection vulnerability in news.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the hid parameter. | Jan 13, 2006 | 7.5 | 31 | NO | YES |
CVE-2006-2732HIGH SQL injection vulnerability in Your_Account.asp in Mini-Nuke 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) yas_1, (2) yas_2, and (3) yas_3 p | Jun 1, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-0870HIGH SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2. | Feb 23, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-1362HIGH Multiple SQL injection vulnerabilities in Mini-Nuke CMS System 1.8.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the uid parameter in (a) members.a | Mar 23, 2006 | 7.5 | 19 | NO | NO |
CVE-2006-2733MEDIUM membership.asp in Mini-Nuke 2.3 and earlier uses plaintext security codes, which allows remote attackers to register multiple times via automated scripts. | Jun 1, 2006 | 5.0 | 15 | NO | NO |
CVE-2006-2734MEDIUM enter.asp in Mini-Nuke 2.3 and earlier makes it easier for remote attackers to conduct password guessing attacks by setting the guvenlik parameter to the same value as the hidden g | Jun 1, 2006 | 5.0 | 15 | NO | NO |
CVE-2006-0203MEDIUM membership.asp in Mini-Nuke CMS System 1.8.2 and earlier does not verify the old password when changing a password, which allows remote attackers to change the passwords of other m | Jan 13, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mini Nuke.
Media articles that mention a CVE ID that affects a product developed by Mini Nuke — matched by CVE ID, not by vendor name.