Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.0
CVE-2011-3729
dotproject 2.1.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in …
Dotproject
No fix yet
MEDIUM 6.0
CVE-2008-3887
Multiple SQL injection vulnerabilities in index.php in dotProject 2.1.2 allow (1) remote authenticated users to execute arbitrary SQL commands via th…
Dotproject
No fix yet
HIGH 7.5
CVE-2006-4234EPSS 6%
PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and earlier allows remote attackers to execute arbitrary PHP c…
Dotproject
No fix yet
MEDIUM 5.6
CVE-2006-0755EPSS 8%
Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute…
Dotproject
No fix yet
MEDIUM 5.0
CVE-2006-0754
dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scrip…
Dotproject
No fix yet
MEDIUM 5.0
CVE-2006-0756
dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote a…
Dotproject
No fix yet
HIGH 10.0
CVE-2002-1428EPSS 6%
index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1.
Dotproject
No fix yet