Ultrascripts operates a narrowly scoped product line centered on Ultraboard, a web-based application for managing scripts and automation workflows. The vendor's documented vulnerability exposure involves input-handling and validation concerns typical of web-facing administrative interfaces. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ultrascripts over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2000-0426MEDIUM UltraBoard 1.6 and other versions allow remote attackers to cause a denial of service by referencing UltraBoard in the Session parameter, which causes UltraBoard to fork copies of | May 5, 2000 | 5.0 | 23 | NO | YES |
CVE-2000-0332MEDIUM UltraBoard.pl or UltraBoard.cgi CGI scripts in UltraBoard 1.6 allows remote attackers to read arbitrary files via a pathname string that includes a dot dot (..) and ends with a nul | May 3, 2000 | 5.0 | 23 | NO | YES |
The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sens | Mar 12, 2001 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ultrascripts.
Media articles that mention a CVE ID that affects a product developed by Ultrascripts — matched by CVE ID, not by vendor name.