Vastal I Tech operates a portfolio of niche web applications and content platforms spanning entertainment, commerce, and information services, each with a modest but distinct user footprint. The vendor's vulnerability profile reflects the application-layer exposure inherent to web-facing services, with disclosures distributed across multiple product lines rather than concentrated in a flagship offering. Current severity, exploitation activity, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Vastal I Tech over time
Signals from CVEs in this vendor scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-3526HIGH Multiple SQL injection vulnerabilities in Buddy Zone 1.5 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the news_id parameter to view_news.php, (2) th | Jul 3, 2007 | 7.5 | 32 | NO | YES |
CVE-2008-4466HIGH SQL injection vulnerability in view_products_cat.php in Vastal I-Tech Cosmetics Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | Oct 7, 2008 | 7.5 | 29 | NO | YES |
CVE-2008-4462HIGH SQL injection vulnerability in view_news.php in Vastal I-Tech Visa Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. | Oct 7, 2008 | 7.5 | 29 | NO | YES |
CVE-2008-4469HIGH SQL injection vulnerability in view_cresume.php in Vastal I-Tech Freelance Zone allows remote attackers to execute arbitrary SQL commands via the coder_id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4468HIGH SQL injection vulnerability in view_news.php in Vastal I-Tech Share Zone allows remote attackers to execute arbitrary SQL commands via the id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4467HIGH SQL injection vulnerability in show_series_ink.php in Vastal I-Tech Toner Cart allows remote attackers to execute arbitrary SQL commands via the id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4465HIGH SQL injection vulnerability in view_mags.php in Vastal I-Tech DVD Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4464HIGH SQL injection vulnerability in view_mags.php in Vastal I-Tech Mag Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4463HIGH SQL injection vulnerability in view_news.php in Vastal I-Tech Jobs Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. | Oct 7, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-4461HIGH SQL injection vulnerability in advanced_search_results.php in Vastal I-Tech Dating Zone, possibly 0.9.9, allows remote attackers to execute arbitrary SQL commands via the fage para | Oct 7, 2008 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (14 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Vastal I Tech.
Media articles that mention a CVE ID that affects a product developed by Vastal I Tech — matched by CVE ID, not by vendor name.