Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary commands via the baseDir parameter in (1) db_adodb.php, (2) db_connect.php, (3) session.php, (4) vw_usr_roles.php, (5) calendar.php, (6) date_format.php, and (7) tasks/gantt.php; and the dPconfig[root_dir] parameter in (8) projects/gantt.php, (9) gantt2.php, and (10) vw_files.php
Published Feb 18, 2006
5.6
MEDIUMCVSS 3.1
EPSS 8.03%
Description
Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary commands via the baseDir parameter in (1) db_adodb.php, (2) db_connect.php, (3) session.php, (4) vw_usr_roles.php, (5) calendar.php, (6) date_format.php, and (7) tasks/gantt.php; and the dPconfig[root_dir] parameter in (8) projects/gantt.php, (9) gantt2.php, and (10) vw_files.php. NOTE: the vendor disputes this issue, stating that the product documentation clearly recommends that the system administrator disable register_globals, and that the check.php script warns against this setting. Also, the vendor says that the protection.php/siteurl vector is incorrect because protection.php does not exist in the product
Affected products
No data.
- 2.0
- 2.0.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
No CVSS v3.0 score for this CVE.
AV:N/AC:H/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
YesTechnical Impact
TotalDecision
n/aAssessed Apr 15, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 2, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (20 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 2, 2026 | 8.03% (0.08028) | 94.61th | v5 (v2026.06.15) |
| Jun 15, 2026 | 7.85% (0.07846) | 93.91th | v5 (v2026.06.15) |
| Jul 1, 2025 | 11.23% (0.11232) | 93.22th | v4 (v2025.03.14) |
| Mar 30, 2025 | 9.78% (0.09782) | 92.21th | v4 (v2025.03.14) |
| Mar 29, 2025 | 12.22% (0.12218) | 89.71th | v4 (v2025.03.14) |
| Mar 19, 2025 | 9.78% (0.09782) | 91.96th | v4 (v2025.03.14) |
| Mar 17, 2025 | 8.55% (0.08553) | 91.75th | v4 (v2025.03.14) |
| Dec 12, 2024 | 55.76% (0.55759) | 97.79th | v3 (v2023.03.01) |
| Jun 9, 2024 | 55.76% (0.55759) | 97.67th | v3 (v2023.03.01) |
| Jan 8, 2024 | 51.85% (0.51853) | 97.29th | v3 (v2023.03.01) |
| Nov 8, 2023 | 37.30% (0.37304) | 96.80th | v3 (v2023.03.01) |
| Oct 24, 2023 | 17.84% (0.17842) | 95.56th | v3 (v2023.03.01) |
| Jul 13, 2023 | 14.33% (0.14330) | 94.98th | v3 (v2023.03.01) |
| May 24, 2023 | 11.00% (0.10998) | 94.25th | v3 (v2023.03.01) |
| Apr 15, 2023 | 13.18% (0.13181) | 94.67th | v3 (v2023.03.01) |
| Mar 8, 2023 | 15.70% (0.15703) | 94.99th | v3 (v2023.03.01) |
| Mar 7, 2023 | 9.07% (0.09075) | 93.61th | v3 (v2023.03.01) |
| Mar 6, 2023 | 12.57% (0.12567) | 95.52th | v2 (v2022.01.01) |
| Apr 1, 2022 | 12.57% (0.12567) | 95.18th | v2 (v2022.01.01) |
| Feb 4, 2022 | 12.57% (0.12567) | 90.03th | v2 (v2022.01.01) |
No CWE recorded.
References (17)
- http://secunia.com/advisories/18879 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.osvdb.org/23209 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23210 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23211 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23212 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23213 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23214 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23215 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23216 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23217 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23218 vdb-entryx_refsource_OSVDB
- http://www.osvdb.org/23219 vdb-entryx_refsource_OSVDB
- http://www.securityfocus.com/archive/1/424957/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/425285/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/16648 vdb-entryx_refsource_BIDExploit
- http://www.vupen.com/english/advisories/2006/0604 vdb-entryx_refsource_VUPEN
- https://exchange.xforce.ibmcloud.com/vulnerabilities/24738 vdb-entryx_refsource_XF
Change history (0)
No recorded changes yet.