Known Vulnerabilities for products from Phpprojekt
Listed below are 5 of the newest known vulnerabilities associated with the vendor "Phpprojekt".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2007-1639 json | Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticated use... | Not Provided | 2007-03-23 | 2026-04-23 |
| CVE-2007-1638 json | Multiple cross-site request forgery (CSRF) vulnerabilities in the check_csrftoken function in lib/lib.inc.php in PHProjekt 5.... | Not Provided | 2007-03-23 | 2026-04-23 |
| CVE-2006-4609 json | ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in the Content Management module ("Content manager") for P... | 5.1 - MEDIUM | 2006-09-07 | 2023-11-07 |
| CVE-2002-0451 json | filemanager_forms.php in PHProjekt 3.1 and 3.1a allows remote attackers to execute arbitrary PHP code by specifying the URL t... | Not Provided | 2002-08-12 | 2025-04-03 |
| CVE-2001-0995 json | PHProjekt before 2.4a allows remote attackers to perform actions as other PHProjekt users by modifying the ID number in an HT... | Not Provided | 2001-08-31 | 2025-04-03 |