Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Webtrends

First CVE: Jun 29, 1999Active for: 27 yearsTotal CVEs: 6

Webtrends operates a modestly scoped portfolio of web analytics and enterprise reporting products, including its Reporting Center, Log Analyzer, and Enterprise Reporting Server platforms. The vendor's disclosures center on application-layer weaknesses typical of data-collection and reporting systems: sensitive-information exposure and cross-site scripting in web interfaces, alongside a tendency toward public exploit availability. Current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
4.7
Avg CVSS Score
Higher Avg CVSS Score than 8% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Webtrends over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 29, 1999
27 years ago
Most Recent CVE
Feb 5, 2010
6,012 days ago

Products(8 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2002-0595HIGH
Buffer overflow in WTRS_UI.EXE (WTX_REMOTE.DLL) for WebTrends Reporting Center 4.0d allows remote attackers to execute arbitrary code via a long HTTP GET request to the /reports/ d
Jun 18, 20027.533NOYES
CVE-2004-2748MEDIUM
viewreport.pl in NetIQ WebTrends Reporting Center Enterprise Edition 6.1a allows remote attackers to determine the installation path via an invalid profileid parameter, which leaks
Dec 31, 20044.328NOYES
CVE-2001-0693MEDIUM
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an encoded space (%20).
Sep 20, 20015.023NOYES
CVE-2002-0596MEDIUM
WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks
Jun 18, 20025.015NONO
CVE-2003-1583MEDIUM
Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via a crafted client domain name, related to an "Inverse Lookup
Feb 5, 20104.314NONO
CVE-1999-0916LOW
WebTrends software stores account names and passwords in a file which does not have restricted access permissions.
Jun 29, 19992.111NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
17%
67%
17%
Severity distribution among all CVEs352,101 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown6 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown6 (100.0%)
User Interaction
None0 (0.0%)
Unknown6 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown6 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
50.0% of CVEs· 81st percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Webtrends.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Webtrends — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Webtrends's Products

View all 1 CNAs →

Top CWEs