Skip to content
Noroxi

dotbr records

3 published records for vendor dotbr.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    3 records
    • CVE-2003-1405
      31Monitor

      DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) system.php3.

      HighCVSS 7.5Proof of conceptEPSS 4%

      dotbr · botbrDec 31, 2003

    • CVE-2003-1403
      30Monitor

      foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function.

      HighCVSS 7.5No exploitEPSS 1%

      dotbr · botbrDec 31, 2003

    • CVE-2003-1404
      30Monitor

      DotBr 0.1 stores config.inc with insufficient access control under the web document root, which allows remote attackers to obtain sensitive

      HighCVSS 7.5No exploitEPSS 1%

      dotbr · botbrDec 31, 2003