Work System E Commerce maintains a narrowly scoped e-commerce platform with a small vulnerability footprint. Treat this as a compact vendor profile where live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Work System E Commerce over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-1423HIGH Multiple PHP remote file inclusion vulnerabilities in WORK system e-commerce 3.0.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the g_include param | Mar 13, 2007 | 9.3 | 34 | NO | YES |
CVE-2007-5801HIGH Unspecified vulnerability in WORK system e-commerce before 4.0.2 has unknown impact and attack vectors related to "Ajax pages." | Nov 3, 2007 | 7.5 | 19 | NO | NO |
CVE-2008-1839MEDIUM Multgiple cross-site scripting (XSS) vulnerabilities in module/main.php in WORK system e-commerce 4.0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) da | Apr 16, 2008 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Work System E Commerce.
Media articles that mention a CVE ID that affects a product developed by Work System E Commerce — matched by CVE ID, not by vendor name.