Aggregates CVE and security vulnerability intelligence across all fortunescripts-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Disclosed issues often relate to vendor risk sql injection, vendor risk cross-site scripting, and vendor risk csrf; exposure may include vendor impact session compromise in vendor surface software deployment contexts.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2017-17904 | FS Lynda Clone has XSS via the keywords parameter to tutorial/ or the edit_profile_first_name parameter to user/edit_profile. | [email protected] | 5.4 | 0.49% | 2017-12-27 | 2026-05-13 |
| CVE-2017-17903 | FS Lynda Clone has CSRF via user/edit_profile, as demonstrated by adding content to the user panel. | [email protected] | 8.8 | 0.46% | 2017-12-27 | 2026-05-13 |
| CVE-2017-17573 | FS Ebay Clone 1.0 has SQL Injection via the product.php id parameter, or the search.php category_id or sub_category_id parameter. | [email protected] | 9.8 | 3.05% | 2017-12-13 | 2026-05-13 |