Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2011-3729 dotproject 2.1.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in … Dotproject No fix yet Fix from $1,6002011-09-23 MEDIUM 6.0 CVE-2008-3887 Multiple SQL injection vulnerabilities in index.php in dotProject 2.1.2 allow (1) remote authenticated users to execute arbitrary SQL commands via th… Dotproject No fix yet Fix from $1,6002008-09-02 HIGH 7.5 CVE-2006-4234EPSS 6% PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and earlier allows remote attackers to execute arbitrary PHP c… Dotproject No fix yet Fix from $1,9502006-08-18 MEDIUM 5.6 CVE-2006-0755EPSS 8% Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute… Dotproject No fix yet Fix from $1,6002006-02-18 MEDIUM 5.0 CVE-2006-0754 dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scrip… Dotproject No fix yet Fix from $1,6002006-02-18 MEDIUM 5.0 CVE-2006-0756 dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote a… Dotproject No fix yet Fix from $1,6002006-02-18 HIGH 10.0 CVE-2002-1428EPSS 6% index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1. Dotproject No fix yet Fix from $1,9502003-04-11