İçeriğe atla
Noroxi

EGroupware kayıtları

egroupware üreticisine ait 25 yayımlanmış kayıt.

Tüm kayıtlar

25 kayıt
  • CVE-2007-3154
    41Planlayın

    Unspecified vulnerability in Walter Zorn wz_tooltip.js (aka wz_tooltips) before 4.01, as used by eGroupWare before 1.2.107-2 and other packa

    KritikCVSS 10,0İstismar yokEPSS %2

    egroupware · egroupware11 Haz 2007

  • CVE-2007-3155
    41Planlayın

    Unspecified vulnerability in eGroupWare before 1.2.107-2 has unknown impact and attack vectors related to ADOdb.

    KritikCVSS 10,0İstismar yokEPSS %2

    egroupware · egroupware11 Haz 2007

  • CVE-2008-2041
    40Planlayın

    Multiple unspecified vulnerabilities in eGroupWare before 1.4.004 have unspecified attack vectors and "grave" impact when the web server has

    KritikCVSS 10,0İstismar yokEPSS %2

    egroupware · egroupware30 Nis 2008

  • CVE-2024-40614
    39İzleyin

    EGroupware before 23.1.20240624 mishandles an ORDER BY clause.

    KritikCVSS 9,8İstismar yokEPSS %1

    egroupware · egroupware7 Tem 2024

  • CVE-2014-2988
    35İzleyin

    EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta

    YüksekCVSS 8,5İstismar yokEPSS %2

    egroupware · egroupware26 Eki 2014

  • CVE-2026-22243
    34İzleyin

    EGroupware has SQL Injection in Nextmatch Filter Processing

    YüksekCVSS 8,7Kavram kanıtıEPSS %0

    egroupware · egroupware28 Oca 2026

  • CVE-2010-3313
    33İzleyin

    phpgwapi/js/fckeditor/editor/dialog/fck_spellerpages/spellerpages/serverscripts/spellchecker.php in EGroupware 1.4.001+.002; 1.6.001+.002 an

    YüksekCVSS 7,5Kavram kanıtıEPSS %9

    egroupware · egroupware22 Eyl 2010

  • CVE-2014-2027
    31İzleyin

    eGroupware before 1.8.006.20140217 allows remote attackers to conduct PHP object injection attacks, delete arbitrary files, and possibly exe

    YüksekCVSS 7,5İstismar yokEPSS %4

    egroupware · egroupware31 Mar 2015

  • CVE-2005-1203
    31İzleyin

    Multiple SQL injection vulnerabilities in index.php in eGroupware before 1.0.0.007 allow remote attackers to execute arbitrary SQL commands

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    egroupware · egroupware2 May 2005

  • CVE-2011-4949
    30İzleyin

    SQL injection vulnerability in phpgwapi/js/dhtmlxtree/samples/with_db/loaddetails.php in EGroupware Enterprise Line (EPL) before 11.1.201108

    YüksekCVSS 7,5İstismar yokEPSS %2

    egroupware · egroupware31 Ağu 2012

  • CVE-2005-1202
    28İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in eGroupware before 1.0.0.007 allow remote attackers to inject arbitrary web script or

    OrtaCVSS 6,8Kavram kanıtıEPSS %3

    egroupware · egroupware2 May 2005

  • CVE-2014-2987
    27İzleyin

    Multiple cross-site request forgery (CSRF) vulnerabilities in EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edi

    OrtaCVSS 6,8Kavram kanıtıEPSS %1

    egroupware · egroupware26 Eki 2014

  • CVE-2017-14920
    24İzleyin

    Stored XSS vulnerability in eGroupware Community Edition before 16.1.20170922 allows an unauthenticated remote attacker to inject JavaScript

    OrtaCVSS 6,1İstismar yokEPSS %1

    egroupware · egroupware29 Eyl 2017

  • CVE-2023-38329
    24İzleyin

    An issue was discovered in eGroupWare 17.1.20190111.

    OrtaCVSS 6,1İstismar yokEPSS %0

    egroupware · egroupware11 Tem 2025

  • CVE-2011-4951
    23İzleyin

    Open redirect vulnerability in phpgwapi/ntlm/index.php in EGroupware Enterprise Line (EPL) before 11.1.20110804-1 and EGroupware Community E

    OrtaCVSS 5,8İstismar yokEPSS %1

    egroupware · egroupware31 Ağu 2012

  • CVE-2011-4948
    21İzleyin

    Directory traversal vulnerability in admin/remote.php in EGroupware Enterprise Line (EPL) before 11.1.20110804-1 and EGroupware Community Ed

    OrtaCVSS 5,0İstismar yokEPSS %2

    egroupware · egroupware31 Ağu 2012

  • CVE-2023-38327
    21İzleyin

    An issue was discovered in eGroupWare 17.1.20190111.

    OrtaCVSS 5,3İstismar yokEPSS %0

    egroupware · egroupware11 Tem 2025

  • CVE-2008-1502
    20İzleyin

    The _bad_protocol_once function in phpgwapi/inc/class.kses.inc.php in KSES, as used in eGroupWare before 1.4.003, Moodle before 1.8.5, and o

    OrtaCVSS 4,3İstismar yokEPSS %11

    egroupware · egroupware25 Mar 2008

  • CVE-2023-38328
    19İzleyin

    An issue was discovered in eGroupWare 17.1.20190111.

    OrtaCVSS 4,9İstismar yokEPSS %1

    egroupware · egroupware26 Eki 2023

  • CVE-2004-1467
    18İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.0.00.003 and earlier allow remote attackers to inject arbitrary web scri

    OrtaCVSS 4,3Kavram kanıtıEPSS %4

    egroupware · egroupware31 Ara 2004

  • CVE-2010-3314
    18İzleyin

    Cross-site scripting (XSS) vulnerability in login.php in EGroupware 1.4.001+.002; 1.6.001+.002 and possibly other versions before 1.6.003; a

    OrtaCVSS 4,3Kavram kanıtıEPSS %3

    egroupware · egroupware22 Eyl 2010

  • CVE-2011-4950
    17İzleyin

    Cross-site scripting (XSS) vulnerability in phpgwapi/js/jscalendar/test.php in EGroupware Enterprise Line (EPL) before 11.1.20110804-1 and E

    OrtaCVSS 4,3İstismar yokEPSS %1

    egroupware · egroupware31 Ağu 2012

  • CVE-2012-2211
    17İzleyin

    Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 allows remote attack

    OrtaCVSS 4,3İstismar yokEPSS %1

    egroupware · egroupware22 Kas 2012

  • CVE-2007-5091
    17İzleyin

    Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.4.001 allow remote attackers to inject arbitrary web script or HTML via

    OrtaCVSS 4,3İstismar yokEPSS %1

    egroupware · egroupware26 Eyl 2007

  • CVE-2005-1129
    8İzleyin

    eGroupWare 1.0.6 and earlier, when an e-mail is composed with an attachment but not sent, will send that attachment in the next e-mail, whic

    DüşükCVSS 2,1İstismar yokEPSS %0

    egroupware · egroupware2 May 2005