VendorsJportaljportal_web_portalall versions
Vulnerabilities

Jportal Jportal Web Portal

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2004-2036
SQL injection vulnerability in the art_print function in print.inc.php in unknown versions of jPortal before 2.3.1 allows remote attackers to inject arbitrary SQL commands via the id parameter.
Published 2005-05-10 · Modified
7.51 PoCEPSS 0.027
CVE-2007-5974
SQL injection vulnerability in mailer.php in JPortal 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.
Published 2007-11-15 · Modified
7.51 PoCEPSS 0.013
CVE-2005-3509
Multiple SQL injection vulnerabilities in JPortal allow remote attackers to execute arbitrary SQL commands via (1) banner.php or the id parameter to (2) print.php, (3) comment.php, and (4) news.php.
Published 2005-11-06 · Modified
7.52 PoCEPSS 0.012
CVE-2005-1071
SQL injection vulnerability in banner.inc.php in JPortal Web Portal 2.3.1 allows remote attackers to execute arbitrary SQL commands via the haslo parameter.
Published 2005-04-12 · Modified
7.51 PoCEPSS 0.011
CVE-2005-3052
SQL injection vulnerability in module/down.inc.php in jportal 2.3.1 allows remote attackers to execute arbitrary SQL commands via the search field to download.php.
Published 2005-09-23 · Modified
7.51 PoCEPSS 0.011
CVE-2007-5973
SQL injection vulnerability in articles.php in JPortal 2.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter.
Published 2007-11-15 · Modified
7.51 PoCEPSS 0.010
CVE-2007-5912
SQL injection vulnerability in mailer.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.
Published 2007-11-10 · Modified
7.51 PoCEPSS 0.010