Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gforge gforge vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2019-10016
GForge Advanced Server 6.4.4 allows XSS via the commonsearch.php words parameter, as demonstrated by a snippet/search/?words= substring.
Gforge Advanced Server 6.4.4
NA
CVE-2013-1423
(1) contrib/gforge-3.0-cronjobs.patch, (2) cronjobs/homedirs.php, (3) deb-specific/fileforge.pl, (4) deb-specific/group_dump_update.pl, (5) deb-specific/ssh_dump_update.pl, (6) deb-specific/user_dump_update.pl, (7) plugins/scmbzr/common/BzrPlugin.class.php, (8) plugins/scmcvs/com...
Fusionforge Fusionforge 5.2
Fusionforge Fusionforge 5.1
Fusionforge Fusionforge 5.0
NA
CVE-2012-1061
SQL injection vulnerability in GForge Advanced Server 6.0.0 and other versions prior to 6.0.1 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Gforgegroup Gforge 6.0.0
NA
CVE-2009-3304
GForge 4.5.14, 4.7 rc2, and 4.8.2 allows local users to overwrite arbitrary files via a symlink attack on authorized_keys files in users' home directories, related to deb-specific/ssh_dump_update.pl and cronjobs/cvs-cron/ssh_create.php.
Gforge Gforge 4.5.14
Gforge Gforge 4.8.2
Gforge Gforge 4.7
NA
CVE-2009-4069
Multiple cross-site scripting (XSS) vulnerabilities in GForge 4.5.14, 4.7.3, and possibly other versions allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Gforge Gforge 4.5.14
Gforge Gforge 4.7.3
NA
CVE-2009-3303
Cross-site scripting (XSS) vulnerability in www/help/tracker.php in GForge 4.5.14, 4.7 rc2, and 4.8.1 allows remote malicious users to inject arbitrary web script or HTML via the helpname parameter.
Gforge Gforge 4.7
Gforge Gforge 4.5.14
Gforge Gforge 4.8.1
NA
CVE-2009-4070
SQL injection vulnerability in GForge 4.5.14, 4.7.3, and possibly other versions allows remote malicious users to execute arbitrary SQL commands via unknown vectors.
Gforge Gforge 4.7.3
Gforge Gforge 4.5.14
NA
CVE-2008-6188
SQL injection vulnerability in people/editprofile.php in Gforge 4.6 rc1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the skill_edit[] parameter.
Gforge Gforge 4.6 B2
Gforge Gforge 4.5.16
Gforge Gforge 4.5.19
Gforge Gforge
Gforge Gforge 3.0
Gforge Gforge 3.21
Gforge Gforge 3.3
Gforge Gforge 3.1
Gforge Gforge 3.2
Gforge Gforge 4.5
Gforge Gforge 4.5.11
Gforge Gforge 4.5.14
Gforge Gforge 4.6
1 EDB exploit
NA
CVE-2008-6189
SQL injection vulnerability in GForge 4.5.19 allows remote malicious users to execute arbitrary SQL commands via the offset parameter to (1) new/index.php, (2) news/index.php, and (3) top/topusers.php, which is not properly handled in database-pgsql.php.
Gforge Gforge 4.5.19
1 EDB exploit
NA
CVE-2008-6187
SQL injection vulnerability in frs/shownotes.php in Gforge 4.5.19 and previous versions allows remote malicious users to execute arbitrary SQL commands via the release_id parameter.
Gforge Gforge 3.2
Gforge Gforge 3.1
Gforge Gforge 4.5.11
Gforge Gforge 4.5
Gforge Gforge 4.5.16
Gforge Gforge 4.5.14
Gforge Gforge 3.0
Gforge Gforge
Gforge Gforge 3.3
Gforge Gforge 3.21
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »