Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
claroline claroline 1.5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-1595
Cross-site scripting (XSS) vulnerability in document/rqmkhtml.php in Claroline 1.7.4 and previous versions allows remote malicious users to read arbitrary files via ".." sequences in the file parameter in a rqEditHtml command.
Claroline Claroline 1.5
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.2
Claroline Claroline
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.6
2 EDB exploits
NA
CVE-2006-1594
Multiple directory traversal vulnerabilities in document/rqmkhtml.php in Claroline 1.7.4 and previous versions allow remote malicious users to use ".." (dot dot) sequences to (1) read arbitrary files via the file parameter in a rqEditHtml command to document/rqmkhtml.ph...
Claroline Claroline 1.5
Claroline Claroline 1.5.3
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.2
Claroline Claroline
Claroline Claroline 1.5.4
Claroline Claroline 1.6
NA
CVE-2006-1596
PHP remote file inclusion vulnerability in learnPath/include/scormExport.inc.php in Claroline 1.7.4 and previous versions allows remote malicious users to execute arbitrary PHP code via the includePath parameter.
Claroline Claroline 1.5
Claroline Claroline 1.7.4
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.2
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
NA
CVE-2006-2284
Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote malicious users to execute arbitrary PHP code via a URL in the (1) clarolineRepositorySys parameter in ldap.inc.php and the (2) claro_CasLibPath parameter in casProcess.inc.php.
Claroline Claroline 1.7.4
Claroline Claroline 1.7.5
Dokeos Dokeos 1.6 Rc2
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.2
Dokeos Dokeos 1.5.5
Dokeos Dokeos 1.6.4
Claroline Claroline 1.5
Claroline Claroline 1.5.3
Dokeos Dokeos 1.4
Dokeos Dokeos 1.5
Claroline Claroline 1.5.4
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Dokeos Dokeos 1.5.3
Dokeos Dokeos 1.5.4
1 EDB exploit
NA
CVE-2006-5256
PHP remote file inclusion vulnerability in claroline/inc/lib/import.lib.php in Claroline 1.8.0 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the includePath parameter.
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.7.5
Claroline Claroline 1.7.6
Claroline Claroline 1.2
Claroline Claroline 1.3
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7
Claroline Claroline 1.7.7
Claroline Claroline
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.1
Claroline Claroline 1.7.2
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.3
Claroline Claroline 1.7.4
1 EDB exploit
NA
CVE-2008-3260
Multiple cross-site scripting (XSS) vulnerabilities in Claroline prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via (1) the cwd parameter in a rqMkHtml action to document/rqmkhtml.php, or the query string to (2) announcements/announcements.php...
Claroline Claroline 1.5.4
Claroline Claroline 1.6
Claroline Claroline 1.7.5
Claroline Claroline 1.7.6
Claroline Claroline 1.8.5
Claroline Claroline 1.8.6
Claroline Claroline 1.2
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.7
Claroline Claroline 1.8.0
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.3
Claroline Claroline 1.4
Claroline Claroline 1.7
Claroline Claroline 1.7.1
Claroline Claroline 1.8.1
Claroline Claroline 1.8.2
Claroline Claroline
Claroline Claroline 1.5
Claroline Claroline 1.5.3
12 EDB exploits
NA
CVE-2008-3261
Open redirect vulnerability in claroline/redirector.php in Claroline prior to 1.8.10 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.2
Claroline Claroline 1.7.3
Claroline Claroline 1.8.2
Claroline Claroline 1.8.3
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.4
Claroline Claroline 1.7.5
Claroline Claroline 1.8.4
Claroline Claroline 1.8.5
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.6
Claroline Claroline 1.7.7
Claroline Claroline 1.8.6
Claroline Claroline 1.8.7
Claroline Claroline 1.2
Claroline Claroline 1.3
Claroline Claroline 1.7
1 EDB exploit
NA
CVE-2008-3262
Cross-site request forgery (CSRF) vulnerability in Claroline prior to 1.8.10 allows remote malicious users to change passwords, related to lack of a requirement for the previous password.
Claroline Claroline 1.2
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7
Claroline Claroline 1.7.7
Claroline Claroline 1.8.0
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.3
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.1
Claroline Claroline 1.7.2
Claroline Claroline 1.8.1
Claroline Claroline 1.8.2
Claroline Claroline
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.3
Claroline Claroline 1.7.4
Claroline Claroline 1.8.3
Claroline Claroline 1.8.4
Claroline Claroline 1.6
NA
CVE-2005-1374
Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.5.3 up to and including 1.6 Release Candidate 1, and possibly Dokeos, allow remote malicious users to inject arbitrary web script or HTML via (1) exercise_result.php, (2) exercice_submit.php, (3) agenda.php, (4) l...
Claroline Claroline 1.5.3
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
3 EDB exploits
NA
CVE-2005-1375
Multiple SQL injection vulnerabilities in Claroline 1.5.3 up to and including 1.6 Release Candidate 1, and possibly Dokeos, allow remote malicious users to execute arbitrary SQL commands via (1) learningPath.php, (2) learningPathAdmin.php, (3) learnPath_details.php, (4) modules_p...
Claroline Claroline 1.5.3
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
4 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site request forgery
CVE-2024-34351
CVE-2024-1076
CVE-2024-25522
CVE-2024-34547
CVE-2024-4644
unauthorized
remote
CVE-2024-4671
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »