Zeescripts maintains a focused portfolio of web-based property and review management applications, including ZeeBuddy, ZeeProperty, and ZeeReviews, that serve niche business functions. The durable vulnerability signal centers on SQL injection across these products, a pervasive input-handling weakness class that reflects the web-application tier's exposure to database-layer attacks; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zeescripts over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-15976CRITICAL ZeeBuddy 2x allows SQL Injection via the admin/editadgroup.php groupid parameter, a different vulnerability than CVE-2008-3604. | Oct 29, 2017 | 9.8 | 42 | NO | YES |
CVE-2008-3604CRITICAL SQL injection vulnerability in bannerclick.php in ZeeBuddy 2.1 allows remote attackers to execute arbitrary SQL commands via the adid parameter. | Aug 12, 2008 | 9.8 | 42 | NO | YES |
CVE-2008-4621HIGH SQL injection vulnerability in bannerclick.php in ZeeScripts Zeeproperty allows remote attackers to execute arbitrary SQL commands via the adid parameter. | Oct 21, 2008 | 7.5 | 28 | NO | YES |
CVE-2008-3669HIGH SQL injection vulnerability in comments.php in ZeeScripts Reviews Opinions Rating Posting Engine Web-Site PHP Script (aka ZeeReviews) allows remote attackers to execute arbitrary S | Aug 13, 2008 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zeescripts.
Media articles that mention a CVE ID that affects a product developed by Zeescripts — matched by CVE ID, not by vendor name.