Ninjadesigns maintains a narrow portfolio of web-based applications including mailing-list, chat, and blogging tools, with a durable signal centered on path-traversal vulnerabilities affecting input validation and directory access controls. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ninjadesigns over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-1486HIGH Directory traversal vulnerability in pmscript.php in Flatchat 3.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the with parameter. | Apr 29, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-0571MEDIUM admin.php in Ninja Designs Mailist 3.0 stores backup copies of maillist.php under the web root with insufficient access control, which allows remote attackers to obtain sensitive i | Feb 13, 2009 | 5.0 | 23 | NO | YES |
CVE-2009-0570MEDIUM Directory traversal vulnerability in send.php in Ninja Designs Mailist 3.0, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include an | Feb 13, 2009 | 5.1 | 23 | NO | YES |
CVE-2009-0325MEDIUM Directory traversal vulnerability in entries/index.php in Ninja Blog 4.8, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in t | Jan 29, 2009 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ninjadesigns.
Media articles that mention a CVE ID that affects a product developed by Ninjadesigns — matched by CVE ID, not by vendor name.