Tr Forum operates a narrowly scoped forum or community platform product, with reported vulnerabilities reflecting general application-security concerns rather than a specialized technical domain. The observed weakness classifications remain broadly characterized; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tr Forum over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-4584HIGH Tr Forum 2.0 allows remote attackers to bypass authentication and add an administrative account via the login and password parameters to admin/insert_admin.php. | Sep 6, 2006 | 7.5 | 30 | NO | YES |
CVE-2006-4586MEDIUM The admin panel in Tr Forum 2.0 accepts a username and password hash for authentication, which allows remote authenticated users to perform unauthorized actions, as demonstrated by | Sep 6, 2006 | 5.5 | 24 | NO | YES |
CVE-2006-4585HIGH SQL injection vulnerability in admin/editer.php in Tr Forum 2.0 allows remote authenticated users to execute arbitrary SQL commands via the id2 parameter. NOTE: this can be levera | Sep 6, 2006 | 9.0 | 23 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tr Forum.
Media articles that mention a CVE ID that affects a product developed by Tr Forum — matched by CVE ID, not by vendor name.