PHP-Collab / Phpcollab
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2017-15907 | SQL injection vulnerability in phpCollab 2.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to newsdesk/newsdesk.… | CRITICAL | 9.8 | Oct 26, 2017 |
| CVE-2017-6090 | Unrestricted file upload vulnerability in clients/editclient.php in PhpCollab 2.5.1 and earlier allows remote authenticated users to execute arbitrary code by… | HIGH | 8.8 | Oct 2, 2017 |
| CVE-2017-6089 | SQL injection vulnerability in PhpCollab 2.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) project or id parameters to to… | CRITICAL | 9.8 | Oct 2, 2017 |
| CVE-2011-3772 | phpCollab 2.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error mess… | MEDIUM | 5.0 | Sep 24, 2011 |
| CVE-2008-4304 | general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related… | HIGH | 10.0 | Dec 23, 2008 |
| CVE-2006-1495 | SQL injection vulnerability in general/sendpassword.php in (1) PHPCollab 2.4 and 2.5.rc3, and (2) NetOffice 2.5.3-pl1 and 2.6.0b2 allows remote attackers to ex… | HIGH | 7.5 | Mar 30, 2006 |
Showing 1 to 6 of 6 CVEs