Affected Products
Vendor / product matrix with CVE counts sourced from the CPE catalog.
Products
1 vendor| Vendor | Products | CVEs | KEV | Avg EPSS | Worst Severity |
|---|---|---|---|---|---|
| 1 | 2 | 0 | 16.7% | MEDIUM |
Related CVEs
2| CVE ID | Description | Severity | CVSS | KEV | EPSS | Published | |
|---|---|---|---|---|---|---|---|
| CVE-2025-61540 | SQL injection vulnerability in Ultimate PHP Board 2.2.7 via the username field in lostpassword.php. | MEDIUM | 6.5 | — | 17.9% | Oct 16, 2025 | |
| CVE-2025-61539 | Cross site scripting (XSS) vulnerability in Ultimate PHP Board 2.2.7 via the u_name parameter in lostpassword.php. | MEDIUM | 6.1 | — | 15.6% | Oct 16, 2025 |