Known Vulnerabilities for products from Openconstructor Project
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Openconstructor Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2012-3873 json | Multiple SQL injection vulnerabilities in Open Constructor 3.12.0 allow remote authenticated users to execute arbitrary SQL c... | Not Provided | 2012-12-28 | 2026-04-29 |
| CVE-2012-3872 json | Multiple cross-site scripting (XSS) vulnerabilities in Open Constructor 3.12.0 allow remote attackers to inject arbitrary web... | Not Provided | 2012-12-28 | 2026-04-29 |
| CVE-2012-3871 json | Cross-site scripting (XSS) vulnerability in data/hybrid/i_hybrid.php in Open Constructor 3.12.0 allows remote authenticated u... | Not Provided | 2012-12-28 | 2026-04-29 |
| CVE-2012-3870 json | Multiple cross-site scripting (XSS) vulnerabilities in objects/createobject.php in Open Constructor 3.12.0 allow remote authe... | Not Provided | 2012-12-28 | 2026-04-29 |
Known software with vulnerabilities from Openconstructor Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Openconstructor Project | Openconstructor | 3.12.0 |