Redgraphic develops the Sapid CMS, a content-management system where the durable vulnerability signal centers on application-layer input-handling and access-control issues, including code injection and improper authentication. Current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Redgraphic over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5293HIGH Multiple PHP remote file inclusion vulnerabilities in SAPID CMS 1.2.3 Stable allow remote attackers to execute arbitrary PHP code via a URL in the (1) GLOBALS[root_path] parameter | Oct 4, 2012 | 7.5 | 33 | NO | YES |
CVE-2006-4026HIGH PHP remote file inclusion vulnerability in SAPID CMS 123 rc3 allows remote attackers to execute arbitrary PHP code via a URL in the (1) root_path parameter in usr/extensions/get_in | Aug 9, 2006 | 7.5 | 29 | NO | YES |
CVE-2005-4007HIGH Multiple unspecified vulnerabilities in SAPID CMS before 1.2.3.03, related to newly registered users and possibly authorization checks, have unknown impact and attack vectors invol | Dec 5, 2005 | 10.0 | 24 | NO | NO |
CVE-2005-4006HIGH SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (1) insert_file.php, (2) insert_image.php, (3) insert_link.ph | Dec 5, 2005 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Redgraphic.
Media articles that mention a CVE ID that affects a product developed by Redgraphic — matched by CVE ID, not by vendor name.