- EPSS 0.16%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple cross-site request forgery (CSRF) vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote authenticated users to (1) hijack the authentication of users for requests that cause an unspecified impact via the id parameter to pro...
CVE-2015-2143
- EPSS 0.2%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple cross-site request forgery (CSRF) vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote attackers to hijack the authentication of users for requests that cause an unspecified impact via unknown parameters.
CVE-2015-2144
- EPSS 0.18%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple cross-site scripting (XSS) vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote authenticated users to inject arbitrary web script or HTML via the (1) project name parameter to project.php; the (2) use_js parameter to user...
CVE-2015-2145
- EPSS 0.28%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple cross-site scripting (XSS) vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
CVE-2015-2146
- EPSS 0.43%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple SQL injection vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to project.php, the (2) group_id parameter to group.php, the (3) status_id parameter t...
CVE-2015-2147
- EPSS 0.37%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple SQL injection vulnerabilities in Issuetracker phpBugTracker before 1.7.0 allow remote attackers to execute arbitrary SQL commands via unspecified parameters.
CVE-2015-2148
- EPSS 0.17%
- Veröffentlicht 06.10.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple cross-site scripting (XSS) vulnerabilities in Issuetracker phpBugTracker before 1.7.2 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.