Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2012-5701
Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute arbitrary SQL commands via the…
Dotproject
after 2.1.6
MEDIUM 5.0
CVE-2011-3729
dotproject 2.1.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in …
Dotproject
No fix yet
MEDIUM 6.8
CVE-2008-6747
dotProject before 2.1.2 does not properly restrict access to administrative pages, which allows remote attackers to gain privileges. NOTE: some of t…
Dotproject
after 2.1.1
MEDIUM 6.0
CVE-2008-3887
Multiple SQL injection vulnerabilities in index.php in dotProject 2.1.2 allow (1) remote authenticated users to execute arbitrary SQL commands via th…
Dotproject
No fix yet
MEDIUM 6.4
CVE-2007-5486
dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via …
Dotproject
after 2.0.4
HIGH 7.5
CVE-2006-4234EPSS 6%
PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and earlier allows remote attackers to execute arbitrary PHP c…
Dotproject
No fix yet
MEDIUM 5.6
CVE-2006-0755EPSS 8%
Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute…
Dotproject
No fix yet
MEDIUM 5.0
CVE-2006-0754
dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scrip…
Dotproject
No fix yet
MEDIUM 5.0
CVE-2006-0756
dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote a…
Dotproject
No fix yet
HIGH 10.0
CVE-2002-1428EPSS 6%
index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1.
Dotproject
No fix yet