Shoutpro appears as a narrowly scoped vendor with a focused product line centered on its core streaming or audio platform. The limited disclosure history reflects either the product's niche deployment context or early-stage vulnerability reporting; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Shoutpro over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2141HIGH Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary PHP code into shouts.php via the shout parameter. | Apr 19, 2007 | 7.5 | 53 | NO | YES |
CVE-2006-7047MEDIUM include.php in Shoutpro 1.0 might allow remote attackers to bypass IP ban restrictions via a URL in the path parameter that points to an alternate bannedips.php file. NOTE: this i | Feb 24, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Shoutpro.
Media articles that mention a CVE ID that affects a product developed by Shoutpro — matched by CVE ID, not by vendor name.