Skip to content
Noroxi

phenotype-cms records

3 published records for vendor phenotype-cms.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    3 records
    • CVE-2009-3543
      31Monitor

      SQL injection vulnerability in _phenotype/admin/login.php in Phenotype CMS before 2.9 allows remote attackers to execute arbitrary SQL comma

      HighCVSS 7.5Proof of conceptEPSS 2%

      phenotype-cms · phenotype cmsOct 2, 2009

    • CVE-2011-0407
      30Monitor

      SQL injection vulnerability in the store function in _phenotype/system/class/PhenoTypeDataObject.class.php in Phenotype CMS 3.0 allows remot

      HighCVSS 7.5Proof of conceptEPSS 1%

      phenotype-cms · phenotype cmsJan 10, 2011

    • CVE-2009-2951
      30Monitor

      Phenotype CMS before 2.9 does not use a random salt value for password encryption, which makes it easier for context-dependent attackers to

      HighCVSS 7.5No exploitEPSS 1%

      phenotype-cms · phenotype cmsAug 24, 2009