Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Douphp HIGH 7.2
CVE-2024-7917

A vulnerability, which was classified as critical, has been found in DouPHP 1.7 Release 20220822. Affected by this issue is some unknown functionalit…

No fix yet
Fix from $1,950 2024-08-18
Douphp MEDIUM 5.4
CVE-2022-46438

A cross-site scripting (XSS) vulnerability in the /admin/article_category.php component of DouPHP v1.7 20221118 allows attackers to execute arbitrary…

No fix yet
Fix from $1,600 2023-01-13
Douphp MEDIUM 6.1
CVE-2022-24131

DouPHP v1.6 Release 20220121 is affected by Cross Site Scripting (XSS) through /admin/login.php in the background, which will lead to JavaScript code…

No fix yet
Fix from $1,600 2022-03-30
Douphp MEDIUM 6.1
CVE-2021-3370

DouPHP v1.6 was discovered to contain a cross-site scripting (XSS) vulnerability via /admin/cloud.php.

Mitigation only
Fix from $1,600 2021-12-08
Douphp CRITICAL 9.8
CVE-2019-12564

In DouCo DouPHP v1.5 Release 20190516, remote attackers can view the database backup file via a brute-force guessing approach for data/backup/Dyyyymm…

No fix yet
Fix from $2,300 2019-06-03
Douphp MEDIUM 5.3
CVE-2018-20566

An issue was discovered in DouCo DouPHP 1.5 20181221. It allows full path disclosure in "Smarty error: unable to read resource" error messages for a …

No fix yet
Fix from $1,600 2018-12-28
Douphp MEDIUM 5.3
CVE-2018-20567

An issue was discovered in DouCo DouPHP 1.5 20181221. \install\index.php allows a reload of the product in opportunistic circumstances in which insta…

No fix yet
Fix from $1,600 2018-12-28
Douphp HIGH 8.8
CVE-2018-20419

DouCo DouPHP 1.5 has upload/admin/manager.php?rec=insert CSRF to add an administrator account.

No fix yet
Fix from $1,950 2018-12-24