Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
phpgroupware phpgroupware 0.9.16.005 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-2575
phpGroupWare 0.9.14.005 and previous versions allow remote malicious users to obtain sensitive information via a direct request to (1) hook_admin.inc.php, (2) hook_home.inc.php, (3) class.holidaycalc.inc.php, and (4) setup.inc.php.sample, which reveals the path in an error messag...
Phpgroupware Phpgroupware 0.9.16.000
Phpgroupware Phpgroupware 0.9.16.003
Phpgroupware Phpgroupware 0.9.16.005
Phpgroupware Phpgroupware 0.9.16.002
NA
CVE-2010-0403
Directory traversal vulnerability in about.php in phpGroupWare (phpgw) prior to 0.9.16.016 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the app parameter.
Phpgroupware Phpgroupware 0.9.16.012
Phpgroupware Phpgroupware
Phpgroupware Phpgroupware 0.9.16.011
Phpgroupware Phpgroupware 0.9.16.001
Phpgroupware Phpgroupware 0.9.16.014
Phpgroupware Phpgroupware 0.9.16.000
Phpgroupware Phpgroupware 0.9.16.010
Phpgroupware Phpgroupware 0.9.16.003
Phpgroupware Phpgroupware 0.9.16.005
Phpgroupware Phpgroupware 0.9.16.002
Phpgroupware Phpgroupware 0.9.16
NA
CVE-2010-0404
Multiple SQL injection vulnerabilities in phpGroupWare (phpgw) prior to 0.9.16.016 allow remote malicious users to execute arbitrary SQL commands via unspecified parameters to (1) class.sessions_db.inc.php, (2) class.translation_sql.inc.php, or (3) class.auth_sql.inc.php in phpgw...
Phpgroupware Phpgroupware 0.9.16.012
Phpgroupware Phpgroupware
Phpgroupware Phpgroupware 0.9.16.011
Phpgroupware Phpgroupware 0.9.16.001
Phpgroupware Phpgroupware 0.9.16.014
Phpgroupware Phpgroupware 0.9.16.000
Phpgroupware Phpgroupware 0.9.16.010
Phpgroupware Phpgroupware 0.9.16.003
Phpgroupware Phpgroupware 0.9.16.005
Phpgroupware Phpgroupware 0.9.16.002
Phpgroupware Phpgroupware 0.9.16
NA
CVE-2005-2761
Cross-site scripting (XSS) vulnerability in phpGroupWare 0.9.16.000 allows administrators to inject arbitrary web script or HTML by modifying the main screen message.
Phpgroupware Phpgroupware 0.9.16.000
NA
CVE-2005-3347
Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and previous versions, as used in phpgroupware 0.9.16 and previous versions, and egrouwpware prior to 1.0.0.009, allow remote malicious users to include arbitrary files via .. (dot dot) sequences in the (...
Phpgroupware Phpgroupware 0.9.16
NA
CVE-2005-2781
The Avatar upload feature in FUD Forum prior to 2.7.0 does not properly verify uploaded files, which allows remote malicious users to execute arbitrary PHP code via a file with a .php extension that contains image data followed by PHP code.
Ilia Alshanetsky Fudforum 2.6.11
Ilia Alshanetsky Fudforum 2.6.9
Ilia Alshanetsky Fudforum 2.3.5
Ilia Alshanetsky Fudforum 2.6.2
Ilia Alshanetsky Fudforum 2.6.8
Ilia Alshanetsky Fudforum 2.6.13
Ilia Alshanetsky Fudforum 2.6.1
Ilia Alshanetsky Fudforum 2.3.1
Ilia Alshanetsky Fudforum 2.2.3
Ilia Alshanetsky Fudforum 2.6.14
Ilia Alshanetsky Fudforum 2.2.1
Ilia Alshanetsky Fudforum 2.6.6
Ilia Alshanetsky Fudforum 2.1.3
Ilia Alshanetsky Fudforum 2.2.5
Ilia Alshanetsky Fudforum 2.7.0
Ilia Alshanetsky Fudforum 2.5.2
Ilia Alshanetsky Fudforum 2.2.2
Ilia Alshanetsky Fudforum 2.3.4
Ilia Alshanetsky Fudforum 2.6.7
Ilia Alshanetsky Fudforum 2.1.1
Ilia Alshanetsky Fudforum 2.6.10
Ilia Alshanetsky Fudforum 2.5.0
NA
CVE-2005-2600
FUDForum 2.6.15 with "Tree View" enabled, as used in other products such as phpgroupware and egroupware, allows remote malicious users to read private posts via a modified mid parameter.
Ilia Alshanetsky Fudforum 2.6.15
NA
CVE-2005-2498
Eval injection vulnerability in PHPXMLRPC 1.1.1 and previous versions (PEAR XML-RPC for PHP), as used in multiple products including (1) Drupal, (2) phpAdsNew, (3) phpPgAds, and (4) phpgroupware, allows remote malicious users to execute arbitrary PHP code via certain nested XML t...
Gggeek Phpxmlrpc
Debian Debian Linux 3.1
NA
CVE-2005-3348
HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and previous versions, as used in phpgroupware 0.9.16 and previous versions, and egroupware prior to 1.0.0.009, allows remote malicious users to spoof web content and poison web caches via CRLF sequences in the ...
Phpsysinfo Phpsysinfo 2.3
Phpsysinfo Phpsysinfo 2.1
Phpsysinfo Phpsysinfo 2.4
Phpsysinfo Phpsysinfo 2.0
NA
CVE-2005-0870
Multiple cross-site scripting (XSS) vulnerabilities in phpSysInfo 2.3, when register_globals is enabled, allow remote malicious users to inject arbitrary web script or HTML via the (1) sensor_program parameter to index.php, (2) text[language], (3) text[template], or (4) hide_pick...
Phpsysinfo Phpsysinfo 2.3
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started