Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Paid To Read Script Project

First CVE: Dec 18, 2017Active for: 9 yearsTotal CVEs: 5

The Paid To Read Script Project maintains a niche web application framework, with its vulnerability footprint concentrated in the core paid-to-read-script product and dominated by application-layer input-handling and authentication weaknesses such as SQL injection, cross-site scripting, improper authentication, and sensitive information exposure. These classes are characteristic of web application architecture and reflect the product's role in handling user input and managing access controls. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
5
Total CVEs
More Total CVEs than 83% of tracked vendors
5.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 97% of tracked vendors
7.9
Avg CVSS Score
Higher Avg CVSS Score than 77% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Paid To Read Script Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 18, 2017
8 years ago
Most Recent CVE
Dec 20, 2017
3,138 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (5 CVEs).

5 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-17651CRITICAL
Paid To Read Script 2.0.5 has SQL Injection via the admin/userview.php uid parameter, the admin/viewemcamp.php fnum parameter, or the admin/viewvisitcamp.php fn parameter.
Dec 18, 20179.843NOYES
CVE-2017-17779CRITICAL
Paid To Read Script 2.0.5 has SQL injection via the referrals.php id parameter.
Dec 20, 20179.828NONO
CVE-2017-17777CRITICAL
Paid To Read Script 2.0.5 has authentication bypass in the admin panel via a direct request, as demonstrated by the admin/viewvisitcamp.php fn parameter and the admin/userview.php
Dec 20, 20179.828NONO
CVE-2017-17776MEDIUM
Paid To Read Script 2.0.5 has full path disclosure via an invalid admin/userview.php uid parameter.
Dec 20, 20175.319NONO
CVE-2017-17778MEDIUM
Paid To Read Script 2.0.5 has XSS via the referrals.php tier parameter or the admin/userview.php uid parameter.
Dec 20, 20174.818NONO
View all 5 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products5 CVEs
40%
60%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumCritical
Attack Vector
Local0 (0.0%)
Network5 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low5 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None4 (80.0%)
Unknown0 (0.0%)
Required1 (20.0%)
Privileges Required
Low0 (0.0%)
High1 (20.0%)
None4 (80.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (5 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
20.0% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Paid To Read Script Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Paid To Read Script Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Paid To Read Script Project's Products

View all 1 CNAs →

Top CWEs