Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Projectpier MEDIUM 5.4
CVE-2013-3635

ProjectPier 0.8.8 has stored XSS

No fix yet
Fix from $1,600 2020-02-07
Projectpier MEDIUM 5.4
CVE-2013-3636

ProjectPier 0.8.8 has a Remote Information Disclosure Weakness because of the lack of the HttpOnly cookie flag

No fix yet
Fix from $1,600 2020-02-07
Projectpier MEDIUM 5.4
CVE-2013-3637

ProjectPier 0.8.8 does not use the Secure flag for cookies

No fix yet
Fix from $1,600 2020-02-07
Projectpier CRITICAL 9.8
CVE-2018-10759

PHP remote file inclusion vulnerability in public/patch/patch.php in Project Pier 0.8.8 and earlier allows remote attackers to execute arbitrary comm…

Fix: after 0.8.8
Fix from $2,300 2018-05-16
Projectpier HIGH 8.8
CVE-2018-10760

Unrestricted file upload vulnerability in the Files plugin in ProjectPier 0.88 and earlier allows remote authenticated users to execute arbitrary PHP…

Fix: after 0.8.8
Fix from $1,950 2018-05-16
Projectpier MEDIUM 6.1
CVE-2015-2796

Multiple cross-site scripting (XSS) vulnerabilities in Project-Pier ProjectPier-Core allow remote attackers to inject arbitrary web script or HTML vi…

Patch available
Fix from $1,600 2018-02-02
Projectpier MEDIUM 5.0
CVE-2011-3797

ProjectPier 0.8.0.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path …

Mitigation only
Fix from $1,600 2011-09-24
Projectpier MEDIUM 6.8
CVE-2008-5583

Cross-site request forgery (CSRF) vulnerability in index.php in ProjectPier 0.8 and earlier allows remote attackers to perform actions as an administ…

Fix: after 0.8
Fix from $1,600 2008-12-15