Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
claroline claroline 1.5 vulnerabilities and exploits
(subscribe to this query)
770
VMScore
CVE-2005-1375
Multiple SQL injection vulnerabilities in Claroline 1.5.3 up to and including 1.6 Release Candidate 1, and possibly Dokeos, allow remote malicious users to execute arbitrary SQL commands via (1) learningPath.php, (2) learningPathAdmin.php, (3) learnPath_details.php, (4) modules_p...
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.5.3
4 EDB exploits
755
VMScore
CVE-2006-5256
PHP remote file inclusion vulnerability in claroline/inc/lib/import.lib.php in Claroline 1.8.0 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the includePath parameter.
Claroline Claroline 1.7.5
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.2
Claroline Claroline 1.6 Beta
Claroline Claroline 1.7
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.1
Claroline Claroline 1.3
Claroline Claroline 1.7.6
Claroline Claroline 1.7.7
Claroline Claroline
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.6
Claroline Claroline 1.5.3
Claroline Claroline 1.7.3
Claroline Claroline 1.7.2
1 EDB exploit
695
VMScore
CVE-2005-1374
Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.5.3 up to and including 1.6 Release Candidate 1, and possibly Dokeos, allow remote malicious users to inject arbitrary web script or HTML via (1) exercise_result.php, (2) exercice_submit.php, (3) agenda.php, (4) l...
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.5.3
3 EDB exploits
685
VMScore
CVE-2006-2284
Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote malicious users to execute arbitrary PHP code via a URL in the (1) clarolineRepositorySys parameter in ldap.inc.php and the (2) claro_CasLibPath parameter in casProcess.inc.php.
Claroline Claroline 1.7.5
Dokeos Dokeos 1.6 Rc2
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.6 Beta
Dokeos Dokeos 1.6.4
Dokeos Dokeos 1.5.5
Dokeos Dokeos 1.4
Dokeos Dokeos 1.5
Claroline Claroline 1.6 Rc1
Dokeos Dokeos 1.5.3
Claroline Claroline 1.5
Dokeos Dokeos 1.5.4
Claroline Claroline 1.6
Claroline Claroline 1.5.3
Claroline Claroline 1.7.2
1 EDB exploit
668
VMScore
CVE-2006-1596
PHP remote file inclusion vulnerability in learnPath/include/scormExport.inc.php in Claroline 1.7.4 and previous versions allows remote malicious users to execute arbitrary PHP code via the includePath parameter.
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.5
Claroline Claroline 1.6
Claroline Claroline 1.5.3
Claroline Claroline 1.7.2
668
VMScore
CVE-2006-1594
Multiple directory traversal vulnerabilities in document/rqmkhtml.php in Claroline 1.7.4 and previous versions allow remote malicious users to use ".." (dot dot) sequences to (1) read arbitrary files via the file parameter in a rqEditHtml command to document/rqmkhtml.ph...
Claroline Claroline 1.5.4
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.5
Claroline Claroline 1.6
Claroline Claroline 1.5.3
Claroline Claroline
Claroline Claroline 1.7.2
516
VMScore
CVE-2008-3262
Cross-site request forgery (CSRF) vulnerability in Claroline prior to 1.8.10 allows remote malicious users to change passwords, related to lack of a requirement for the previous password.
Claroline Claroline 1.8.1
Claroline Claroline 1.7.5
Claroline Claroline 1.8.2
Claroline Claroline 1.8.4
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.2
Claroline Claroline
Claroline Claroline 1.6 Beta
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.7
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.1
Claroline Claroline 1.3
Claroline Claroline 1.7.6
Claroline Claroline 1.7.7
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.8.5
Claroline Claroline 1.6
Claroline Claroline 1.8.6
515
VMScore
CVE-2006-4844
PHP remote file inclusion vulnerability in inc/claro_init_local.inc.php in Claroline 1.7.7 and previous versions, as used in Dokeos and possibly other products, allows remote malicious users to execute arbitrary PHP code via a URL in the extAuthSource[newUser] parameter.
Dokeos Open Source Learning And Knowledge Management Tool 1.5
Claroline Claroline 1.7.5
Dokeos Open Source Learning And Knowledge Management Tool 1.6 Rc2
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.2
Claroline Claroline
Dokeos Open Source Learning And Knowledge Management Tool 1.5.3
Claroline Claroline 1.6 Beta
Dokeos Open Source Learning And Knowledge Management Tool 1.6.4
Dokeos Open Source Learning And Knowledge Management Tool 1.5.5
Dokeos Open Source Learning And Knowledge Management Tool 1.5.4
Claroline Claroline 1.7
Claroline Claroline 1.6 Rc1
Dokeos Open Source Learning And Knowledge Management Tool 1.6.5
Claroline Claroline 1.7.1
Claroline Claroline 1.3
Claroline Claroline 1.7.6
Claroline Claroline 1.4
Claroline Claroline 1.5
Dokeos Open Source Learning And Knowledge Management Tool 1.4
Claroline Claroline 1.6
1 EDB exploit
490
VMScore
CVE-2008-3260
Multiple cross-site scripting (XSS) vulnerabilities in Claroline prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via (1) the cwd parameter in a rqMkHtml action to document/rqmkhtml.php, or the query string to (2) announcements/announcements.php...
Claroline Claroline 1.8.1
Claroline Claroline 1.7.5
Claroline Claroline 1.8.2
Claroline Claroline 1.8.4
Claroline Claroline 1.7.4
Claroline Claroline 1.5.4
Claroline Claroline 1.2
Claroline Claroline
Claroline Claroline 1.6 Beta
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.7
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.1
Claroline Claroline 1.3
Claroline Claroline 1.7.6
Claroline Claroline 1.7.7
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.8.5
Claroline Claroline 1.6
Claroline Claroline 1.8.6
12 EDB exploits
440
VMScore
CVE-2006-1595
Cross-site scripting (XSS) vulnerability in document/rqmkhtml.php in Claroline 1.7.4 and previous versions allows remote malicious users to read arbitrary files via ".." sequences in the file parameter in a rqEditHtml command.
Claroline Claroline 1.5.4
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.5
Claroline Claroline 1.6
Claroline Claroline 1.5.3
Claroline Claroline
Claroline Claroline 1.7.2
2 EDB exploits
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-0044
client side
CVE-2021-47601
deserialization
CVE-2024-34994
encryption
CVE-2021-47609
CVE-2024-37079
CVE-2024-38608
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »