Skip to content
Noroxi

phpcollab records

5 published records for vendor phpcollab.

Researcher profile

Entered KEV
0 · 0%
Weaponized
1 · 20%
Pre-auth RCE
4
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2017-6090
    64This week

    Unrestricted file upload vulnerability in clients/editclient.php in PhpCollab 2.5.1 and earlier allows remote authenticated users to execute

    HighCVSS 8.8WeaponizedEPSS 96%

    phpcollab · phpcollabOct 2, 2017

  • general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspeci

    CriticalCVSS 10.0No exploitEPSS 3%

    phpcollab · phpcollabDec 23, 2008

  • SQL injection vulnerability in PhpCollab 2.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) project or

    CriticalCVSS 9.8Proof of conceptEPSS 3%

    phpcollab · phpcollabOct 2, 2017

  • SQL injection vulnerability in phpCollab 2.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to

    CriticalCVSS 9.8No exploitEPSS 1%

    phpcollab · phpcollabOct 26, 2017

  • CVE-2006-1495
    32Monitor

    SQL injection vulnerability in general/sendpassword.php in (1) PHPCollab 2.4 and 2.5.rc3, and (2) NetOffice 2.5.3-pl1 and 2.6.0b2 allows rem

    HighCVSS 7.5Proof of conceptEPSS 6%

    netoffice · netofficeMar 29, 2006