Resalecode's vulnerability footprint centers on a niche collection of PHP-based web scripts and e-commerce platforms, including website builders, shopping carts, and classified-listing clones that appeal to small businesses and resellers. The recurring exposure reflects the application-layer focus of these products: cross-site scripting and SQL injection vulnerabilities dominate the disclosed weakness classes, characteristic flaws in web-facing input handling where public proof-of-concept code and exploit tooling circulate widely. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Resalecode over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-4691HIGH SQL injection vulnerability in addlink.php in Classified Linktrader Script allows remote attackers to execute arbitrary SQL commands via the slctCategories parameter. | Mar 10, 2010 | 7.5 | 28 | NO | YES |
CVE-2009-4689HIGH SQL injection vulnerability in index.php in PHP Shopping Cart Selling Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. | Mar 10, 2010 | 7.5 | 28 | NO | YES |
CVE-2009-2588MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Hotscripts Type PHP Clone Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) f | Jul 24, 2009 | 4.3 | 23 | NO | YES |
CVE-2009-4688MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in index.php in PHP Shopping Cart Selling Website Script allow remote attackers to inject arbitrary web script or HTML via the ( | Mar 10, 2010 | 4.3 | 22 | NO | YES |
CVE-2009-2590HIGH SQL injection vulnerability in showcategory.php in Hutscripts PHP Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. | Jul 24, 2009 | 7.5 | 19 | NO | NO |
CVE-2009-2589MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Hutscripts PHP Website Script allow remote attackers to inject arbitrary web script or HTML via the msg parameter to (1) feed | Jul 24, 2009 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Resalecode.
Media articles that mention a CVE ID that affects a product developed by Resalecode — matched by CVE ID, not by vendor name.