Skip to content
Noroxi

knowledgetree records

4 published records for vendor knowledgetree.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    4 records
    • CVE-2014-2737
      30Monitor

      SQL injection vulnerability in the get_active_session function in the KTAPI_UserSession class in webservice/clienttools/services/mdownload.p

      HighCVSS 7.5No exploitEPSS 1%

      knowledgetree · knowledgetreeApr 22, 2014

    • CVE-2006-2443
      18Monitor

      The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local users to obtain sensit

      MediumCVSS 4.6No exploitEPSS 0%

      knowledgetree · knowledgetreeMay 18, 2006

    • CVE-2006-2885
      17Monitor

      Multiple cross-site scripting (XSS) vulnerabilities in KnowledgeTree Open Source 3.0.3 and earlier allow remote attackers to inject arbitrar

      MediumCVSS 4.3No exploitEPSS 1%

      knowledgetree · knowledgetreeJun 7, 2006

    • CVE-2007-4281
      17Monitor

      Cross-site scripting (XSS) vulnerability in KnowledgeTree Open Source 3.4 and 3.4.1 allows remote attackers to inject arbitrary web script o

      MediumCVSS 4.3No exploitEPSS 1%

      knowledgetree · open sourceAug 9, 2007