Yannick Tanguy's vulnerability profile centers on the Else If CMS, a web content management system where disclosures cluster around web application input-handling and code-injection risks. The recurring weakness classes—code injection, path traversal, and cross-site scripting—reflect the template-rendering and request-parsing surface typical of CMS platforms; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Yannick Tanguy over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-5305HIGH Multiple PHP remote file inclusion vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to execute arbitrary PHP code via a URL in the (1) contenus parameter to (a) conten | Oct 9, 2007 | 7.5 | 37 | NO | YES |
CVE-2007-5304MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) repertimage parameter to utilis | Oct 9, 2007 | 4.3 | 28 | NO | YES |
CVE-2007-5307HIGH ELSEIF CMS Beta 0.6 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows re | Oct 9, 2007 | 7.5 | 28 | NO | YES |
CVE-2007-5306MEDIUM ELSEIF CMS Beta 0.6 allows remote attackers to obtain sensitive information (full path) via unspecified vectors to utilisateurs/votesresultats.php. | Oct 9, 2007 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Yannick Tanguy.
Media articles that mention a CVE ID that affects a product developed by Yannick Tanguy — matched by CVE ID, not by vendor name.