İçeriğe atla
Noroxi

dotproject kayıtları

dotproject üreticisine ait 15 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

15 kayıt
  • CVE-2002-1428
    42Planlayın

    index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1

    KritikCVSS 10,0Kavram kanıtıEPSS %6

    dotproject · dotproject11 Nis 2003

  • CVE-2006-4234
    32İzleyin

    PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and earlier allows remote attackers to execute arbitr

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    dotproject · dotproject18 Ağu 2006

  • CVE-2008-6747
    27İzleyin

    dotProject before 2.1.2 does not properly restrict access to administrative pages, which allows remote attackers to gain privileges.

    OrtaCVSS 6,8İstismar yokEPSS %1

    dotproject · dotproject23 Nis 2009

  • CVE-2012-5701
    27İzleyin

    Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute arbitrary SQL command

    OrtaCVSS 6,8Kavram kanıtıEPSS %1

    dotproject · dotproject20 Eki 2014

  • CVE-2007-5486
    25İzleyin

    dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this mo

    OrtaCVSS 6,4İstismar yokEPSS %1

    dotproject · dotproject16 Eki 2007

  • CVE-2006-0755
    24İzleyin

    Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers t

    OrtaCVSS 5,6Kavram kanıtıEPSS %8

    dotproject · dotproject17 Şub 2006

  • CVE-2008-3887
    24İzleyin

    Multiple SQL injection vulnerabilities in index.php in dotProject 2.1.2 allow (1) remote authenticated users to execute arbitrary SQL comman

    OrtaCVSS 6,0İstismar yokEPSS %1

    dotproject · dotproject2 Eyl 2008

  • CVE-2006-0756
    21İzleyin

    dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows

    OrtaCVSS 5,0İstismar yokEPSS %2

    dotproject · dotproject17 Şub 2006

  • CVE-2006-0754
    21İzleyin

    dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain

    OrtaCVSS 5,0İstismar yokEPSS %2

    dotproject · dotproject17 Şub 2006

  • CVE-2011-3729
    20İzleyin

    dotproject 2.1.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation

    OrtaCVSS 5,0İstismar yokEPSS %1

    dotproject · dotproject23 Eyl 2011

  • CVE-2006-3240
    18İzleyin

    Cross-site scripting (XSS) vulnerability in classes/ui.class.php in dotProject 2.0.3 and earlier allows remote attackers to inject arbitrary

    OrtaCVSS 4,3İstismar yokEPSS %2

    dotproject · dotproject27 Haz 2006

  • CVE-2012-5702
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in dotProject before 2.1.7 allow remote attackers to inject arbitrary web script or HTML

    OrtaCVSS 4,3Kavram kanıtıEPSS %2

    dotproject · dotproject21 Eki 2014

  • CVE-2006-2851
    17İzleyin

    Cross-site scripting (XSS) vulnerability in index.php in dotProject 2.0.2 and earlier allows remote attackers to inject arbitrary web script

    OrtaCVSS 4,3İstismar yokEPSS %1

    dotproject · dotproject6 Haz 2006

  • CVE-2007-3226
    17İzleyin

    Cross-site scripting (XSS) vulnerability in dotProject before 2.1 RC2 allows remote attackers to inject arbitrary web script or HTML via uns

    OrtaCVSS 4,3İstismar yokEPSS %1

    dotproject · dotproject14 Haz 2007

  • CVE-2008-3886
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in dotProject 2.1.2 allow remote attackers to inject arbitrary web script o

    OrtaCVSS 4,3İstismar yokEPSS %1

    dotproject · dotproject2 Eyl 2008