Vulnerabilities > Appserv Open Project

DATE CVE VULNERABILITY TITLE RISK
2008-05-21 CVE-2008-2398 Cross-Site Scripting vulnerability in Appserv Open Project Appserv
Cross-site scripting (XSS) vulnerability in index.php in AppServ Open Project 2.5.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the appservlang parameter.
4.3
2006-01-09 CVE-2006-0125 Remote File Include vulnerability in Appserv Open Project Appserv 2.4.5
Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote attackers to include arbitrary files via the appserv_root parameter.
network
low complexity
appserv-open-project
5.0
2005-12-16 CVE-2005-4296 Remote Denial of Service vulnerability in AppServ Open Project
AppServ Open Project 2.5.3 allows remote attackers to cause a denial of service via a large HTTP request.
network
low complexity
appserv-open-project
7.8
2004-12-31 CVE-2004-1532 Remote Insecure Default Password vulnerability in AppServ Open Project
AppServ 2.5.x and earlier installs a default username and password, which allows remote attackers to gain access.
network
low complexity
appserv-open-project
7.5