Chaozz
Products
3- 2 CVEs
- 1 CVE
- 1 CVE
Recent CVEs
4| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2008-2887 | 0.03 | — | 0.04 | Jun 27, 2008 | Directory traversal vulnerability in index.php in chaozz@work FubarForum 1.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. | ||
| CVE-2009-1053 | 0.00 | — | 0.00 | Mar 24, 2009 | chaozzDB 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv. | ||
| CVE-2009-1052 | 0.00 | — | 0.00 | Mar 24, 2009 | FireAnt 1.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv. | ||
| CVE-2009-1051 | 0.00 | — | 0.00 | Mar 24, 2009 | FubarForum 1.6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv. |
- CVE-2008-2887Jun 27, 2008risk 0.03cvss —epss 0.04
Directory traversal vulnerability in index.php in chaozz@work FubarForum 1.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.
- CVE-2009-1053Mar 24, 2009risk 0.00cvss —epss 0.00
chaozzDB 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv.
- CVE-2009-1052Mar 24, 2009risk 0.00cvss —epss 0.00
FireAnt 1.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv.
- CVE-2009-1051Mar 24, 2009risk 0.00cvss —epss 0.00
FubarForum 1.6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for user.tsv.