Plx Web Studio develops web-based business applications including ad-trading and payment-processing products, which present application-layer attack surfaces centered on database interaction. The observed vulnerability signals cluster around SQL injection and related input-handling weaknesses characteristic of web applications with direct database connectivity. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Plx Web Studio over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-3025HIGH SQL injection vulnerability in ad.php in plx Ad Trader 3.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter in a redir action. | Jul 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2006-6392HIGH Directory traversal vulnerability in index.php in plx Web Studio (aka plxWebDev) plx Pay 3.2 and earlier allows remote attackers to include and execute arbitrary local files, or ob | Dec 8, 2006 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Plx Web Studio.
Media articles that mention a CVE ID that affects a product developed by Plx Web Studio — matched by CVE ID, not by vendor name.