Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dotproject dotproject 2.0 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2006-4234
PHP remote file inclusion vulnerability in classes/query.class.php in dotProject 2.0.4 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the baseDir parameter.
Dotproject Dotproject 2.0.1
Dotproject Dotproject 2.0.2
Dotproject Dotproject 2.0
Dotproject Dotproject 2.0.4
1 EDB exploit
4.3
CVSSv2
CVE-2006-2851
Cross-site scripting (XSS) vulnerability in index.php in dotProject 2.0.2 and previous versions allows remote malicious users to inject arbitrary web script or HTML via unspecified parameters, which are not properly handled when the client is using Internet Explorer.
Dotproject Dotproject 2.0
Dotproject Dotproject 2.0.1
Dotproject Dotproject 2.0.2
6.8
CVSSv2
CVE-2008-6747
dotProject prior to 2.1.2 does not properly restrict access to administrative pages, which allows remote malicious users to gain privileges. NOTE: some of these details are obtained from third party information.
Dotproject Dotproject 2.0.3
Dotproject Dotproject 2.0.4
Dotproject Dotproject 0.2.1.5
Dotproject Dotproject 2.0
Dotproject Dotproject 2.1
Dotproject Dotproject 2.1.0
Dotproject Dotproject
Dotproject Dotproject 2.0.1
Dotproject Dotproject 2.0.2
5
CVSSv2
CVE-2006-0754
dotProject 2.0.1 and previous versions allows remote malicious users to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scripts in the db directory, which reveal the path in an error message. NOTE: the vendor disputes this issue, saying tha...
Dotproject Dotproject 2.0
Dotproject Dotproject 2.0.1
5.1
CVSSv2
CVE-2006-0755
Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and previous versions, when register_globals is enabled, allow remote malicious users to execute arbitrary commands via the baseDir parameter in (1) db_adodb.php, (2) db_connect.php, (3) session.php, (4) vw_usr_...
Dotproject Dotproject 2.0
Dotproject Dotproject 2.0.1
10 EDB exploits
5
CVSSv2
CVE-2006-0756
dotProject 2.0.1 and previous versions leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote malicious users to obtain sensitive configuration information. NOTE: the vendor disputes this issue, saying that it could ...
Dotproject Dotproject 2.0
Dotproject Dotproject 2.0.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started