Known Vulnerabilities for OpenDocMan by Opendocman
Listed below are 10 of the newest known vulnerabilities associated with "OpenDocMan" by "Opendocman".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-45834 json | An attacker can upload or transfer files of dangerous types to the OpenDocMan 1.4.4 portal via add.php using MIME-bypass, whi... | 9.8 - CRITICAL | 2022-03-18 | 2022-03-25 |
| CVE-2019-25684 json | OpenDocMan 1.3.4 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries... | 9.8 - CRITICAL | 2026-04-05 | 2026-04-06 |
| CVE-2015-5625 json | Cross-site scripting (XSS) vulnerability in OpenDocMan before 1.3.4 allows remote attackers to inject arbitrary web script or... | 4.3 - MEDIUM | 2015-09-07 | 2016-12-22 |
| CVE-2014-4853 json | Cross-site scripting (XSS) vulnerability in odm-init.php in OpenDocMan before 1.2.7.3 allows remote authenticated users to in... | 4.3 - MEDIUM | 2014-07-10 | 2014-07-11 |
| CVE-2014-2317 json | SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL com... | 6.8 - MEDIUM | 2014-03-09 | 2014-03-10 |
| CVE-2014-1946 json | OpenDocMan 1.2.7 and earlier does not properly validate allowed actions, which allows remote authenticated users to bypass an... | 8.8 - HIGH | 2018-04-10 | 2019-04-26 |
| CVE-2014-1945 json | SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL com... | 7.5 - HIGH | 2014-03-09 | 2014-03-10 |
| CVE-2011-3764 json | OpenDocMan 1.2.6-svn-2011-01-21 allows remote attackers to obtain sensitive information via a direct request to a .php file, ... | 5 - MEDIUM | 2011-09-24 | 2017-08-29 |
| CVE-2009-3801 json | Not Provided | 2009-10-27 | 2026-04-23 | |
| CVE-2009-3789 json | Not Provided | 2009-10-26 | 2026-04-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Opendocman | Opendocman | 1.3.5 | |||
| Application | Opendocman | Opendocman | 1.3.4 | |||
| Application | Opendocman | Opendocman | 1.3.3 | |||
| Application | Opendocman | Opendocman | 1.3.2 | |||
| Application | Opendocman | Opendocman | 1.3.1 | |||
| Application | Opendocman | Opendocman | 1.3.0 | |||
| Application | Opendocman | Opendocman | 1.2.9 | |||
| Application | Opendocman | Opendocman | 1.2.8.1 | |||
| Application | Opendocman | Opendocman | 1.2.8 | |||
| Application | Opendocman | Opendocman | 1.2.7.3 | |||
| Application | Opendocman | Opendocman | 1.2.7.2 | |||
| Application | Opendocman | Opendocman | 1.2.7.1 | |||
| Application | Opendocman | Opendocman | 1.2.7 | |||
| Application | Opendocman | Opendocman | 1.2.6.8 | |||
| Application | Opendocman | Opendocman | 1.2.6.7 | |||
| Application | Opendocman | Opendocman | 1.2.6.7 | |||
| Application | Opendocman | Opendocman | 1.2.6.6 | |||
| Application | Opendocman | Opendocman | 1.2.6.5 | |||
| Application | Opendocman | Opendocman | 1.2.6.3 | |||
| Application | Opendocman | Opendocman | 1.2.6.3 |