Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
claroline claroline 1.7.7 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-3257
Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.7.7 allow remote malicious users to inject arbitrary HTML or web script via unspecified attack vectors, possibly including (1) calendar/myagenda.php, (2) document/document.php, (3) phpbb/newtopic.php, (4) tracking...
Claroline Claroline 1.7.7
NA
CVE-2006-5256
PHP remote file inclusion vulnerability in claroline/inc/lib/import.lib.php in Claroline 1.8.0 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the includePath parameter.
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.7.5
Claroline Claroline 1.7.6
Claroline Claroline 1.2
Claroline Claroline 1.3
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7
Claroline Claroline 1.7.7
Claroline Claroline
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.1
Claroline Claroline 1.7.2
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.3
Claroline Claroline 1.7.4
1 EDB exploit
NA
CVE-2008-3261
Open redirect vulnerability in claroline/redirector.php in Claroline prior to 1.8.10 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.2
Claroline Claroline 1.7.3
Claroline Claroline 1.8.2
Claroline Claroline 1.8.3
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.4
Claroline Claroline 1.7.5
Claroline Claroline 1.8.4
Claroline Claroline 1.8.5
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.6
Claroline Claroline 1.7.7
Claroline Claroline 1.8.6
Claroline Claroline 1.8.7
Claroline Claroline 1.2
Claroline Claroline 1.3
Claroline Claroline 1.7
1 EDB exploit
NA
CVE-2008-3262
Cross-site request forgery (CSRF) vulnerability in Claroline prior to 1.8.10 allows remote malicious users to change passwords, related to lack of a requirement for the previous password.
Claroline Claroline 1.2
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7
Claroline Claroline 1.7.7
Claroline Claroline 1.8.0
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.3
Claroline Claroline 1.4
Claroline Claroline 1.5
Claroline Claroline 1.7.1
Claroline Claroline 1.7.2
Claroline Claroline 1.8.1
Claroline Claroline 1.8.2
Claroline Claroline
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.3
Claroline Claroline 1.7.4
Claroline Claroline 1.8.3
Claroline Claroline 1.8.4
Claroline Claroline 1.6
NA
CVE-2008-3260
Multiple cross-site scripting (XSS) vulnerabilities in Claroline prior to 1.8.10 allow remote malicious users to inject arbitrary web script or HTML via (1) the cwd parameter in a rqMkHtml action to document/rqmkhtml.php, or the query string to (2) announcements/announcements.php...
Claroline Claroline 1.5.4
Claroline Claroline 1.6
Claroline Claroline 1.7.5
Claroline Claroline 1.7.6
Claroline Claroline 1.8.5
Claroline Claroline 1.8.6
Claroline Claroline 1.2
Claroline Claroline 1.6 Beta
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.7.7
Claroline Claroline 1.8.0
Claroline Claroline 1.8.7
Claroline Claroline 1.8.8
Claroline Claroline 1.3
Claroline Claroline 1.4
Claroline Claroline 1.7
Claroline Claroline 1.7.1
Claroline Claroline 1.8.1
Claroline Claroline 1.8.2
Claroline Claroline
Claroline Claroline 1.5
Claroline Claroline 1.5.3
12 EDB exploits
NA
CVE-2006-4844
PHP remote file inclusion vulnerability in inc/claro_init_local.inc.php in Claroline 1.7.7 and previous versions, as used in Dokeos and possibly other products, allows remote malicious users to execute arbitrary PHP code via a URL in the extAuthSource[newUser] parameter.
Claroline Claroline 1.5.3
Claroline Claroline 1.5.4
Claroline Claroline 1.7.3
Claroline Claroline 1.7.4
Dokeos Open Source Learning And Knowledge Management Tool 1.6.4
Dokeos Open Source Learning And Knowledge Management Tool 1.6.4 P1
Claroline Claroline 1.2
Claroline Claroline 1.3
Claroline Claroline 1.6 Rc1
Claroline Claroline 1.6
Claroline Claroline 1.6 Beta
Claroline Claroline 1.7.5
Claroline Claroline 1.7.6
Dokeos Open Source Learning And Knowledge Management Tool 1.6.5
Dokeos Open Source Learning And Knowledge Management Tool 1.6 Rc2
Claroline Claroline 1.7
Dokeos Open Source Learning And Knowledge Management Tool 1.4
Dokeos Open Source Learning And Knowledge Management Tool 1.5
Dokeos Open Source Learning And Knowledge Management Tool 1.5.3
Claroline Claroline
Claroline Claroline 1.4
Claroline Claroline 1.5
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-35977
CVE-2023-49335
man-in-the-middle
CVE-2024-4947
CVE-2024-31714
memory leak
SQL
CVE-2024-35994
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started