Portalapp
4 CVEs tracked since 2008. Since Oct 2008, none of them reached CISA KEV.
Portalapp CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2008-10 | 4 | 0 |
Products
The products that kept showing up in Portalapp's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 5 most recently published vulnerabilities affecting Portalapp.
- CVE-2008-4614PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies.7.5
- CVE-2008-4613SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via the sortby parameter.7.5
- CVE-2008-4612Cross-site scripting (XSS) vulnerability in PortalApp 4.0 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter to (1) forums.asp and (2) content.asp.4.3
- CVE-2008-4615Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors.10.0
- CVE-2007-3252PortalApp stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for 8691.mdb, a different vecto...7.8
The record
- Peak rank
- #28 in Oct 2008
- Busiest month shown
- Oct 2008, 4 CVEs
- Months with a KEV entry
- 0 since Oct 2008
- Monthly snapshots
- 1 since 2008