Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Dotproject MEDIUM 5.0
CVE-2011-3729

dotproject 2.1.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in …

No fix yet
Fix from $1,600 2011-09-23
Dotproject MEDIUM 6.0
CVE-2008-3887

Multiple SQL injection vulnerabilities in index.php in dotProject 2.1.2 allow (1) remote authenticated users to execute arbitrary SQL commands via th…

No fix yet
Fix from $1,600 2008-09-02
Dotproject HIGH 7.5
CVE-2006-4234EPSS 6%

PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and earlier allows remote attackers to execute arbitrary PHP c…

No fix yet
Fix from $1,950 2006-08-18
Dotproject MEDIUM 5.6
CVE-2006-0755EPSS 8%

Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute…

No fix yet
Fix from $1,600 2006-02-18
Dotproject MEDIUM 5.0
CVE-2006-0754

dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scrip…

No fix yet
Fix from $1,600 2006-02-18
Dotproject MEDIUM 5.0
CVE-2006-0756

dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote a…

No fix yet
Fix from $1,600 2006-02-18
Dotproject HIGH 10.0
CVE-2002-1428EPSS 6%

index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1.

No fix yet
Fix from $1,950 2003-04-11