Viaviweb develops a narrow range of web-based applications, including a wallpaper administration system and e-book platform, that exhibit input-validation and file-upload handling weaknesses characteristic of server-side web software. The recurring vulnerability pattern centers on SQL injection and unrestricted file uploads, typical risks for internet-facing web applications lacking robust input and upload controls. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Viaviweb over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-50892CRITICAL VIAVIWEB Wallpaper Admin 1.0 contains a SQL injection vulnerability that allows attackers to bypass authentication by manipulating login credentials. Attackers can exploit the logi | Jan 13, 2026 | 9.8 | 34 | NO | NO |
CVE-2021-32428CRITICAL SQL Injection vulnerability in viaviwebtech Android EBook App (Books App, PDF, ePub, Online Book Reading, Download Books) 10 via the author_id parameter to api.php. | Jul 1, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-50893CRITICAL VIAVIWEB Wallpaper Admin 1.0 contains an unauthenticated remote code execution vulnerability in the image upload functionality. Attackers can upload a malicious PHP file through th | Jan 13, 2026 | 9.8 | 29 | NO | NO |
CVE-2022-50894MEDIUM VIAVIWEB Wallpaper Admin 1.0 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting SQL code through the img_id par | Jan 13, 2026 | 6.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Viaviweb.
Media articles that mention a CVE ID that affects a product developed by Viaviweb — matched by CVE ID, not by vendor name.