Techno Dreams maintains a small portfolio of web-based applications, including guest books, content-management components, and informational scripts commonly deployed on shared hosting and small-business websites. Despite the modest product scope, these applications recur in the landscape as a top-decile-represented vendor, reflecting their historical prevalence in early web hosting environments. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Techno Dreams over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-4891HIGH SQL injection vulnerability in ArticlesTableview.asp in Techno Dreams Articles & Papers Package 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ke | Sep 19, 2006 | 7.5 | 29 | NO | YES |
CVE-2006-4892HIGH SQL injection vulnerability in faqview.asp in Techno Dreams FAQ Manager Package 1.0 allows remote attackers to execute arbitrary SQL commands via the key parameter. | Sep 19, 2006 | 7.5 | 29 | NO | YES |
CVE-2006-5640HIGH SQL injection vulnerability in guestbookview.asp in Techno Dreams Guest Book 1.0 earlier allows remote attackers to execute arbitrary SQL commands via the key parameter. | Nov 1, 2006 | 7.5 | 28 | NO | YES |
CVE-2006-5641HIGH SQL injection vulnerability in MainAnnounce2.asp in Techno Dreams Announcement allows remote attackers to execute arbitrary SQL commands via the key parameter. | Nov 1, 2006 | 7.5 | 28 | NO | YES |
CVE-2007-2979HIGH Techno Dreams Web Directory / Search Engine 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a databa | Jun 1, 2007 | 7.8 | 20 | NO | NO |
CVE-2005-3383HIGH SQL injection vulnerability in Techno Dreams Announcement script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in adm | Oct 30, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-3384HIGH SQL injection vulnerability in Techno Dreams Guest Book script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin | Oct 30, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-3385HIGH SQL injection vulnerability in Techno Dreams Mailing List script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in adm | Oct 30, 2005 | 7.5 | 19 | NO | NO |
CVE-2005-3386HIGH SQL injection vulnerability in Techno Dreams Web Directory script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in ad | Oct 30, 2005 | 7.5 | 19 | NO | NO |
CVE-2006-2837MEDIUM Cross-site scripting (XSS) vulnerability in Techno Dreams Guest Book allows remote attackers to inject arbitrary web script or HTML via certain comment fields in the "Sign Our Gues | Jun 6, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Techno Dreams.
Media articles that mention a CVE ID that affects a product developed by Techno Dreams — matched by CVE ID, not by vendor name.