Wwwisis develops a focused web application platform where documented vulnerabilities center on classic input-handling and path-traversal weaknesses, particularly cross-site scripting and directory-traversal flaws typical of web-facing applications. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wwwisis over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-0508HIGH wwwisis 3.45 and earlier allows remote attackers to execute arbitrary commands and read files via the parameters (1) prolog or (2) epilog. | Aug 12, 2002 | 10.0 | 26 | NO | NO |
CVE-2007-5484MEDIUM Directory traversal vulnerability in wxis.exe in WWWISIS 7.1 allows local users to read arbitrary files via a .. (dot dot) in the IsisScript parameter to iah. | Oct 16, 2007 | 5.0 | 23 | NO | YES |
CVE-2007-5455MEDIUM Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a call to the iah/iah.xis IsisScr | Oct 14, 2007 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wwwisis.
Media articles that mention a CVE ID that affects a product developed by Wwwisis — matched by CVE ID, not by vendor name.