Known Vulnerabilities for products from Doorgets
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Doorgets".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-11626 json | routers/ajaxRouter.php in doorGets 7.0 has a web site physical path leakage vulnerability, as demonstrated by an ajax/index.p... | 5.3 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11625 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/emailingRequest.php. A remote background admini... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11624 json | doorGets 7.0 has an arbitrary file deletion vulnerability in /doorgets/app/requests/user/configurationRequest.php. A remote b... | 4.9 - MEDIUM | 2019-04-30 | 2020-08-24 |
| CVE-2019-11623 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=siteweb. A... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11622 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/modulecategoryRequest.php. A remote background ... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11621 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=network. A... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11620 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/modulecategoryRequest.php. A remote background ... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11619 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/requests/user/configurationRequest.php when action=analytics.... | 4.9 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11618 json | doorGets 7.0 has a default administrator credential vulnerability. A remote attacker can use this vulnerability to gain admin... | 9.8 - CRITICAL | 2019-04-30 | 2020-08-24 |
| CVE-2019-11617 json | doorGets 7.0 has a CSRF vulnerability in /doorgets/app/requests/user/configurationRequest.php. A remote attacker can exploit ... | 8.8 - HIGH | 2019-04-30 | 2019-05-01 |
| CVE-2019-11616 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /setup/temp/admin.php and /setup/temp/database.php. A re... | 9.8 - CRITICAL | 2019-04-30 | 2020-08-24 |
| CVE-2019-11615 json | /fileman/php/upload.php in doorGets 7.0 has an arbitrary file upload vulnerability. A remote normal registered user can use t... | 8.8 - HIGH | 2019-04-30 | 2019-05-01 |
| CVE-2019-11614 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/views/ajax/commentView.php. A remote unauthorized attacker co... | 7.5 - HIGH | 2019-04-30 | 2019-05-01 |
| CVE-2019-11613 json | doorGets 7.0 has a SQL injection vulnerability in /doorgets/app/views/ajax/contactView.php. A remote normal registered user c... | 6.5 - MEDIUM | 2019-04-30 | 2019-05-01 |
| CVE-2019-11612 json | doorGets 7.0 has an arbitrary file deletion vulnerability in /fileman/php/deletefile.php. A remote unauthenticated attacker c... | 7.5 - HIGH | 2019-04-30 | 2020-08-24 |
| CVE-2019-11611 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/download.php. A remote unauthenticated atta... | 7.5 - HIGH | 2019-04-30 | 2020-08-24 |
| CVE-2019-11610 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/downloaddir.php. A remote unauthenticated a... | 7.5 - HIGH | 2019-04-30 | 2020-08-24 |
| CVE-2019-11609 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/movefile.php. A remote unauthenticated atta... | 8.2 - HIGH | 2019-04-30 | 2020-08-24 |
| CVE-2019-11608 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/renamefile.php. A remote unauthenticated at... | 8.2 - HIGH | 2019-04-30 | 2020-08-24 |
| CVE-2019-11607 json | doorGets 7.0 has a sensitive information disclosure vulnerability in /fileman/php/copydir.php. A remote unauthenticated attac... | 7.5 - HIGH | 2019-04-30 | 2020-08-24 |
Known software with vulnerabilities from Doorgets
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Doorgets | Doorgets | 7.0 |
| Application | Doorgets | Doorgets Cms | 7.0 |