Vulnerabilities > Appserv Open Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-05-21 | CVE-2008-2398 | Cross-Site Scripting vulnerability in Appserv Open Project Appserv Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the appservlang parameter. | 4.3 |
2006-01-09 | CVE-2006-0125 | Remote File Include vulnerability in Appserv Open Project Appserv 2.4.5 Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote attackers to include arbitrary files via the appserv_root parameter. | 5.0 |
2005-12-16 | CVE-2005-4296 | Remote Denial of Service vulnerability in AppServ Open Project AppServ Open Project 2.5.3 allows remote attackers to cause a denial of service via a large HTTP request. | 7.8 |
2004-12-31 | CVE-2004-1532 | Remote Insecure Default Password vulnerability in AppServ Open Project AppServ 2.5.x and earlier installs a default username and password, which allows remote attackers to gain access. | 7.5 |