c
comsenz
Security Risk Profile
49
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 12 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 8, 2008 to present
12
Total CVEs
8
Critical+High
1
Exploited
8
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
8
Critical/High
Risk Level
49/100
medium
⚠️ 1 Active Exploits🆕 1Fresh (<7d)📈 1 in Last 30 Days
Severity Distribution
Critical
4High
4Medium
3Low
1Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
4
2
Input Validation
2
3
Code Injection
2
4
Race Condition
1
Most Affected Products
1. Comsenz Discuz! X5.03
2. Comsenz Discuzx3
3. Comsenz Discuz\!2
4. Comsenz Duomicms2
5. Comsenz Crossday Discuz\! Board2
Recent Vulnerabilities
See more →CVE-2026-105146
CVSS 2.0low
Comsenz Discuz! Admin Medal Moderation mod.php modmedalsubmit sql injection
Oct 4, 2026🔧 No Patch
CVE-2026-49953
CVSS 6.9medium
Discuz! X5.0 CAPTCHA Bypass via Predictable Character Set
Jun 15, 2026🔧 No Patch
CVE-2026-49952
CVSS 9.3critical
Discuz! X5.0 Authentication Bypass via dbbak.php Encryption Oracle
Jun 15, 2026⚠ Exploited🔧 No Patch
CVE-2018-14729
CVSS 9.0critical
May 22, 2019🔧 No Patch
CVE-2018-20424
CVSS 5.9medium
Dec 24, 2018🔧 No Patch
CVE-2018-20423
CVSS 8.1high
Dec 24, 2018🔧 No Patch
CVE-2018-20422
CVSS 8.1high
Dec 24, 2018🔧 No Patch
CVE-2018-18083
CVSS 9.8critical
Oct 9, 2018🔧 No Patch
CVE-2018-18084
CVSS 9.8critical
Oct 9, 2018🔧 No Patch
CVE-2009-3185
CVSS 7.5high
Sep 15, 2009🔧 No Patch
Monitor comsenz in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.