phprofession CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

phprofession vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to phprofession, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2004-1955 SQL injection vulnerability in modules.php in phProfession 2.5 allows remote attackers to execute arbitrary SQL code via the offset parameter. [email protected] 7.5 1.28% 2004-12-31 2026-06-16
CVE-2004-1953 phProfession 2.5 allows remote attackers to gain sensitive information via a direct HTTP request to upload.php, which reveals the path in a PHP error message. [email protected] 5.0 3.30% 2004-12-31 2026-06-16
CVE-2004-1954 Cross-site scripting (XSS) vulnerability in modules.php in phProfession 2.5 allows remote attackers to inject arbitrary web script or HTML via the jcode parameter. [email protected] 4.3 1.91% 2004-04-21 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence