Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Nextclickventures

First CVE: Mar 16, 2026Active for: 1 yearTotal CVEs: 9

Nextclickventures' vulnerability profile centers on RealtyScript, a web-based real estate management application, with a durable signal around application-layer input-handling weaknesses including cross-site scripting, cross-site request forgery, and SQL injection. The vendor's disclosures skew toward serious outcomes, with a meaningful share reaching critical severity, reflecting the common pattern of web applications handling sensitive transactional and customer data without adequate input validation and CSRF protections. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
9.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
6.9
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Nextclickventures over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 16, 2026
4 months ago
Most Recent CVE
Mar 16, 2026
130 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2015-20121CRITICAL
Next Click Ventures RealtyScript 4.0.2 contains SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries by injecting arbitrary SQL code th
Mar 16, 20269.830NONO
CVE-2015-20120CRITICAL
Next Click Ventures RealtyScript 4.0.2 contains multiple time-based blind SQL injection vulnerabilities that allow unauthenticated attackers to extract database information by inje
Mar 16, 20269.830NONO
CVE-2015-20117HIGH
Next Click Ventures RealtyScript 4.0.2 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to create unauthorized user accounts and administra
Mar 16, 20268.827NONO
CVE-2015-20118MEDIUM
Next Click Ventures RealtyScript 4.0.2 contains a stored cross-site scripting vulnerability in the location_name parameter of the admin locations interface. Attackers can submit PO
Mar 16, 20266.122NONO
CVE-2015-20115MEDIUM
Next Click Ventures RealtyScript 4.0.2 fails to properly sanitize file uploads, allowing attackers to store malicious scripts through the file POST parameter in admin/tools.php. At
Mar 16, 20266.122NONO
CVE-2015-20116MEDIUM
Next Click Ventures RealtyScript 4.0.2 fails to properly sanitize CSV file uploads, allowing attackers to inject malicious scripts through filename parameters in multipart form dat
Mar 16, 20266.121NONO
CVE-2015-20114MEDIUM
Next Click Ventures RealtyScript 4.0.2 contains a cross-site scripting vulnerability that allows attackers to execute arbitrary HTML and script code by injecting malicious input th
Mar 16, 20266.121NONO
CVE-2015-20119MEDIUM
Next Click Ventures RealtyScript 4.0.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious HTML and iframe elements through
Mar 16, 20265.419NONO
CVE-2015-20113MEDIUM
Next Click Ventures RealtyScript 4.0.2 contains cross-site request forgery and persistent cross-site scripting vulnerabilities that allow attackers to perform administrative action
Mar 16, 20264.317NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
67%
11%
22%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (22.2%)
Unknown0 (0.0%)
Required7 (77.8%)
Privileges Required
Low1 (11.1%)
High0 (0.0%)
None8 (88.9%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Nextclickventures.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Nextclickventures — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Nextclickventures's Products

View all 1 CNAs →

Top CWEs