Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Digger Solutions Subscribe
Filtered by product Intranet Open Source
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-0116 1 Digger Solutions 1 Intranet Open Source 2018-10-16 7.5 HIGH N/A
Digger Solutions Intranet Open Source (IOS) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for data/intranet.mdb.
CVE-2005-4822 1 Digger Solutions 1 Intranet Open Source 2017-07-28 7.5 HIGH N/A
SQL injection vulnerability in projects/project-edit.asp in Digger Solutions Intranet Open Source (IOS) version 2.7.2 allows remote attackers to execute arbitrary SQL commands via the project_id parameter.