Zoid Technologies maintains a narrowly scoped product line centered on the Project Eros BBS engine, a bulletin-board system product where disclosed vulnerabilities cluster around web-application input handling, primarily cross-site scripting issues. Current vulnerability counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zoid Technologies over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-3308HIGH Unspecified vulnerability in the wpprop code for Project EROS bbsengine before 20060622-0315 has unknown impact and remote attack vectors via [img] tags, possibly cross-site script | Jun 29, 2006 | 9.3 | 23 | NO | NO |
CVE-2006-3307HIGH Multiple SQL injection vulnerabilities in Project EROS bbsengine before bbsengine-20060429-1550-jam allow remote attackers to execute arbitrary SQL commands via (1) unspecified par | Jun 29, 2006 | 7.5 | 19 | NO | NO |
CVE-2006-3306MEDIUM Cross-site scripting (XSS) vulnerability in the preparestring function in lib/common.php in Project EROS bbsengine before 20060501-0142-jam, and possibly earlier versions dating ba | Jun 29, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zoid Technologies.
Media articles that mention a CVE ID that affects a product developed by Zoid Technologies — matched by CVE ID, not by vendor name.