Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ravenphpscripts

First CVE: Apr 2, 2008Active for: 18 yearsTotal CVEs: 7

Ravenphpscripts develops lightweight PHP-based web applications and content-management systems such as RavenNuke and Keep It Simple Guest Book, which remain deployed in niche web-hosting and community-site environments. The vendor's vulnerability profile centers durably on application-layer input-handling and code-generation weaknesses, including code injection, cross-site scripting, SQL injection, and exposure of sensitive information, which are characteristic of older PHP frameworks and reflect the security demands of direct user input processing in web applications. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 86% of tracked vendors
1.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 98% of tracked vendors
6.0
Avg CVSS Score
Higher Avg CVSS Score than 26% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ravenphpscripts over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 2, 2008
18 years ago
Most Recent CVE
Feb 22, 2009
6,361 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2008-1635HIGH
Directory traversal vulnerability in view_private.php in Keep It Simple Guest Book (KISGB) 5.0.0 and earlier allows remote attackers to include and execute arbitrary local files vi
Apr 2, 20087.534NOYES
CVE-2009-0677MEDIUM
avatarlist.php in the Your Account module, reached through modules.php, in Raven Web Services RavenNuke 2.30 allows remote authenticated users to execute arbitrary code via PHP seq
Feb 22, 20096.529NOYES
CVE-2009-0673MEDIUM
Eval injection vulnerability in the Custom Fields feature in the Your Account module in Raven Web Services RavenNuke 2.30 allows remote authenticated administrators to execute arbi
Feb 22, 20096.526NOYES
CVE-2009-0672MEDIUM
SQL injection vulnerability in the Resend_Email module in Raven Web Services RavenNuke 2.30 allows remote authenticated administrators to execute arbitrary SQL commands via the use
Feb 22, 20096.526NOYES
CVE-2009-0674MEDIUM
images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to determine the existence of local files by
Feb 22, 20096.025NOYES
CVE-2009-0678MEDIUM
images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, whic
Feb 22, 20095.023NOYES
CVE-2009-0679MEDIUM
Cross-site scripting (XSS) vulnerability in the Your Account module in RavenNuke 2.30 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Feb 22, 20094.315NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
86%
14%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown7 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown7 (100.0%)
User Interaction
None0 (0.0%)
Unknown7 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown7 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
6 CVEs
85.7% of CVEs· 85th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ravenphpscripts.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ravenphpscripts — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ravenphpscripts's Products

View all 1 CNAs →

Top CWEs