Перейти к содержимому
Noroxi

Записи dokeos

24 опубликованных записей вендора dokeos.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
12
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

24 записей
  • CVE-2008-3363
    31Наблюдать

    Directory traversal vulnerability in user_portal.php in the Dokeos E-Learning System 1.8.5 on Windows allows remote attackers to include and

    ВысокаяCVSS 7,5Proof of conceptEPSS 3 %

    dokeos · e-learning system30 июл. 2008 г.

  • CVE-2008-0850
    31Наблюдать

    Multiple SQL injection vulnerabilities in Dokeos 1.8.4 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    dokeos · dokeos20 февр. 2008 г.

  • CVE-2013-6341
    31Наблюдать

    SQL injection vulnerability in Dokeos 2.2 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the language paramet

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    dokeos · dokeos5 дек. 2013 г.

  • CVE-2008-1223
    31Наблюдать

    Unspecified vulnerability in Dokeos 1.8.4 before SP3 allows attackers to execute arbitrary code via unspecified vectors.

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    dokeos · open source learning and knowledge management tool10 мар. 2008 г.

  • CVE-2007-2889
    31Наблюдать

    SQL injection vulnerability in tracking/courseLog.php in Dokeos 1.6.5 and earlier allows remote attackers to execute arbitrary SQL commands

    ВысокаяCVSS 7,5Proof of conceptEPSS 2 %

    dokeos · open source learning and knowledge management tool29 мая 2007 г.

  • CVE-2009-2004
    30Наблюдать

    Multiple SQL injection vulnerabilities in main/mySpace/myStudents.php in Dokeos 1.8.5, and possibly earlier, allow remote attackers to execu

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    dokeos · dokeos8 июн. 2009 г.

  • CVE-2007-2902
    30Наблюдать

    SQL injection vulnerability in main/auth/my_progress.php in Dokeos 1.8.0 and earlier allows remote authenticated users to execute arbitrary

    ВысокаяCVSS 7,5Proof of conceptEPSS 1 %

    dokeos · dokeos30 мая 2007 г.

  • CVE-2006-2284
    29Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote attackers to execute arbitrary PHP code via a URL in the

    СредняяCVSS 6,8Proof of conceptEPSS 7 %

    claroline · claroline9 мая 2006 г.

  • CVE-2006-2286
    27Наблюдать

    Multiple PHP remote file inclusion vulnerabilities in claro_init_global.inc.php in Dokeos 1.6.3 and earlier, and Dokeos community release 2.

    СредняяCVSS 6,8Эксплойта нетEPSS 2 %

    dokeos · dokeos9 мая 2006 г.

  • CVE-2009-2008
    27Наблюдать

    Multiple SQL injection vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via t

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dokeos · dokeos8 июн. 2009 г.

  • CVE-2009-2005
    27Наблюдать

    Cross-site request forgery (CSRF) vulnerability in Dokeos 1.8.5, and possibly earlier, allows remote attackers to hijack the authentication

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dokeos · dokeos8 июн. 2009 г.

  • CVE-2006-4844
    23Наблюдать

    PHP remote file inclusion vulnerability in inc/claro_init_local.inc.php in Claroline 1.7.7 and earlier, as used in Dokeos and possibly other

    СредняяCVSS 5,1Proof of conceptEPSS 10 %

    claroline · claroline18 сент. 2006 г.

  • CVE-2006-2285
    21Наблюдать

    PHP remote file inclusion vulnerability in authldap.php in Dokeos 1.6.4 allows remote attackers to execute arbitrary PHP code via a URL in t

    СредняяCVSS 5,1Proof of conceptEPSS 4 %

    dokeos · open source learning and knowledge management tool9 мая 2006 г.

  • CVE-2009-2007
    21Наблюдать

    Multiple directory traversal vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to (1) read portions of arbitrary

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    dokeos · dokeos8 июн. 2009 г.

  • CVE-2012-5776
    21Наблюдать

    Dokeos 2.1.1 has multiple XSS issues involving "extra_" parameters in main/auth/profile.php.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    dokeos · dokeos29 янв. 2020 г.

  • CVE-2005-2598
    20Наблюдать

    Multiple directory traversal vulnerabilities in Dokeos 1.6 and earlier, and possibly Claroline, allow remote attackers to (1) delete arbitra

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    dokeos · dokeos17 авг. 2005 г.

  • CVE-2007-6479
    19Наблюдать

    Unrestricted file upload vulnerability in the "My productions" component for main/auth/profile.php (aka the "My profile" page) in Dokeos 1.8

    СредняяCVSS 4,9Proof of conceptEPSS 2 %

    dokeos · dokeos20 дек. 2007 г.

  • CVE-2008-0851
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 allow remote attackers to inject arbitrary web script or HTML via the (1

    СредняяCVSS 4,3Proof of conceptEPSS 4 %

    dokeos · e-learning system20 февр. 2008 г.

  • CVE-2007-2901
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.0 and earlier allow remote attackers to inject arbitrary web script or HTM

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    dokeos · dokeos30 мая 2007 г.

  • CVE-2007-6574
    18Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitrary web script or HTM

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    dokeos · open source learning and knowledge management28 дек. 2007 г.

  • CVE-2008-1222
    17Наблюдать

    Cross-site scripting (XSS) vulnerability in Dokeos 1.8.4 before SP3 allows remote attackers to inject arbitrary web script or HTML via unspe

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    dokeos · open source learning and knowledge management tool10 мар. 2008 г.

  • CVE-2006-3924
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos before 1.6.5 allow remote attackers to inject arbitrary web script or HTML via

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    dokeos · dokeos28 июл. 2006 г.

  • CVE-2009-2009
    17Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inject arbitrary web sc

    СредняяCVSS 4,3Эксплойта нетEPSS 1 %

    dokeos · dokeos8 июн. 2009 г.

  • CVE-2009-2006
    10Наблюдать

    Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inject arbitrary web sc

    НизкаяCVSS 2,6Эксплойта нетEPSS 1 %

    dokeos · dokeos8 июн. 2009 г.