Collector
6 CVEs tracked since 2009. Since May 2009, none of them reached CISA KEV.
Collector CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2009-05 | 6 | 0 |
Products
The products that kept showing up in Collector's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting Collector.
- CVE-2009-1825modules/admuser.php in myColex 1.4.2 does not require administrative authentication, which allows remote authenticated users to list user accounts via a Find action.4.0
- CVE-2009-1826modules/admuser.php in myGesuad 0.9.14 (aka 0.9) does not require administrative authentication, which allows remote authenticated users to list user accounts via a Find action.6.5
- CVE-2009-1812Multiple SQL injection vulnerabilities in myGesuad 0.9.14 (aka 0.9) allow remote attackers to execute arbitrary SQL commands via (1) the formUser parameter (aka the Name field) to common/login.php,...6.0
- CVE-2009-1810Multiple SQL injection vulnerabilities in myColex 1.4.2 allow remote attackers to execute arbitrary SQL commands via (1) the formUser parameter (aka the Name field) to common/login.php, and allow r...6.0
- CVE-2009-1811Multiple cross-site scripting (XSS) vulnerabilities in myGesuad 0.9.14 (aka 0.9) allow remote attackers to inject arbitrary web script or HTML via (1) the Page parameter in a List action to modules...4.3
- CVE-2009-1809Multiple cross-site scripting (XSS) vulnerabilities in myColex 1.4.2 allow remote attackers to inject arbitrary web script or HTML via (1) the year parameter to modules/kalender.php, (2) the Page p...4.3
The record
- Peak rank
- #9 in May 2009
- Busiest month shown
- May 2009, 6 CVEs
- Months with a KEV entry
- 0 since May 2009
- Monthly snapshots
- 1 since 2009