Known Vulnerabilities for products from Citrusdb
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Citrusdb".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2005-0411 json | Directory traversal vulnerability in index.php for CitrusDB 0.3.6 and earlier allows remote attackers and local users to incl... | Not Provided | 2005-02-14 | 2025-04-03 |
| CVE-2005-0410 json | SQL injection vulnerability in importcc.php for CitrusDB 0.3.6 and earlier allows remote attackers to inject data via the fie... | Not Provided | 2005-02-14 | 2025-04-03 |
| CVE-2005-0409 json | CitrusDB 0.3.6 and earlier does not verify authorization for the (1) importcc.php and (2) uploadcc.php, which allows remote a... | Not Provided | 2005-02-14 | 2025-04-03 |
| CVE-2005-0408 json | CitrusDB 0.3.6 and earlier generates easily predictable MD5 hashes of the user name for the id_hash cookie, which allows remo... | Not Provided | 2005-02-14 | 2025-04-03 |
| CVE-2005-0229 json | CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to st... | Not Provided | 2005-04-27 | 2025-04-03 |