Vulnerabilities > Projectsend

DATE CVE VULNERABILITY TITLE RISK
2017-06-18 CVE-2017-9741 Improper Input Validation vulnerability in Projectsend R754
install/make-config.php in ProjectSend r754 allows remote attackers to execute arbitrary PHP code via the dbprefix parameter, related to replacing TABLES_PREFIX in the configuration file.
network
low complexity
projectsend CWE-20
critical
9.8