Reamday Enterprises maintains a focused line of desktop and utility applications, including news readers, calendar, and download management tools, where vulnerabilities recur around web-facing code patterns such as code injection and cross-site scripting. Public exploit tooling has frequently been developed for flaws affecting this vendor's products, reflecting the accessibility and appeal of application-layer injection weaknesses. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Reamday Enterprises over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-1141HIGH PHP remote file inclusion vulnerability in preview.php in Magic News Plus 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the php_script_path parameter. N | Mar 2, 2007 | 7.5 | 36 | NO | YES |
CVE-2006-4823HIGH PHP remote file inclusion vulnerability in scripts/news_page.php in Reamday Enterprises Magic News Pro 1.0.3 and earlier allows remote attackers to execute arbitrary PHP code via a | Sep 15, 2006 | 7.5 | 32 | NO | YES |
CVE-2006-0673HIGH Multiple SQL injection vulnerabilities in cms/index.php in Magic Calendar Lite 1.02, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via th | Feb 13, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-0157MEDIUM settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password via a change action that specifies identical values for the p | Jan 10, 2006 | 5.0 | 23 | NO | YES |
CVE-2007-1142MEDIUM Cross-site scripting (XSS) vulnerability in Magic News Plus 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the link_parameters parameter in (1) news.php a | Mar 2, 2007 | 4.3 | 22 | NO | YES |
settings.php in Reamday Enterprises Magic Downloads 1.1.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authenticatio | Feb 16, 2006 | 2.6 | 12 | NO | NO |
PHP remote file inclusion vulnerability in preview.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to include arbitrary | Feb 16, 2006 | 2.6 | 12 | NO | NO |
profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication | Feb 16, 2006 | 2.6 | 12 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Reamday Enterprises.
Media articles that mention a CVE ID that affects a product developed by Reamday Enterprises — matched by CVE ID, not by vendor name.