The Opensource Classified Ads Script Project is a niche web application framework for building classified-listings platforms, with a vulnerability footprint concentrated in its single core product and rooted in web-layer input-handling weaknesses. The recurring issues—cross-site scripting, SQL injection, and sensitive information exposure—are characteristic of inadequately sanitized user input and database interaction patterns in web applications, and defenders deploying this script should prioritize input validation and parameterized query practices. Current CVE counts, severity, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Opensource Classified Ads Script Project over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-17623CRITICAL Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter. | Dec 13, 2017 | 9.8 | 41 | NO | YES |
CVE-2019-7437MEDIUM PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has reflected Cross-Site Scripting (XSS) via the Search field. | Mar 21, 2019 | 6.1 | 20 | NO | NO |
CVE-2019-7435MEDIUM PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has reflected HTML injection via the Search Form. | Mar 21, 2019 | 5.3 | 19 | NO | NO |
CVE-2019-7436MEDIUM PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has directory traversal via a direct request for a listing of an uploads directory. | Mar 21, 2019 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Opensource Classified Ads Script Project.
Media articles that mention a CVE ID that affects a product developed by Opensource Classified Ads Script Project — matched by CVE ID, not by vendor name.