3 results (0.010 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 1

Collabtive 1.0 has incorrect access control Collabtive versión 1.0, tiene un control de acceso incorrecto. • https://www.immuniweb.com/advisory/HTB23169 • CWE-269: Improper Privilege Management •

CVSS: 8.8EPSS: 1%CPEs: 3EXPL: 1

Multiple incomplete blacklist vulnerabilities in the avatar upload functionality in manageuser.php in Collabtive before 2.1 allow remote authenticated users to execute arbitrary code by uploading a file with a (1) .php3, (2) .php4, (3) .php5, or (4) .phtml extension. Múltiples vulnerabilidades de lista negra incompletas en la funcionalidad de carga de avatar en el archivo manageuser.php en Collabtive versiones anteriores a 2.1, permiten a los usuarios autenticados remotos ejecutar código arbitrario mediante la carga de un archivo con una extensión (1) .php3, (2) .php4, (3) .php5 o (4) .phtml. Collabtive version 2.0 suffers from an arbitrary file upload vulnerability. • http://packetstormsecurity.com/files/133736/Collabtive-2.0-Shell-Upload.html https://github.com/philippK-de/Collabtive/commit/9ce6301583669d0a8ecb4d23fb56e34b68511335 https://lists.debian.org/debian-lts-announce/2020/02/msg00031.html https://usn.ubuntu.com/4590-1 • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 6.5EPSS: 0%CPEs: 26EXPL: 5

SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a projectpdf action. Vulnerabilidad de inyección de SQL en managetimetracker.php de Collabtive anterior a la versión 1.2 permite a usuarios autenticados ejecutar comandos SQL arbitrarios a través del parámetro id en una acción projectpdf. Collabtive version 1.1 suffers from a remote SQL injection vulnerability. • https://www.exploit-db.com/exploits/30946 http://osvdb.org/102123 http://packetstormsecurity.com/files/124777/Collabtive-1.1-SQL-Injection.html http://seclists.org/fulldisclosure/2014/Jan/72 http://www.collabtive.o-dyn.de/blog/?p=621#more-621 http://www.exploit-db.com/exploits/30946 http://www.securityfocus.com/bid/64943 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •