This page aggregates publicly disclosed CVE and security risk information related to portailphp, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2007-1641 | SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via the idnews parameter. | [email protected] | 7.5 | 0.96% | 2007-03-23 | 2026-04-23 |
| CVE-2006-3922 | PHP remote file inclusion vulnerability in mod_membre/inscription.php in PortailPHP 1.7 allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter. | [email protected] | 7.5 | 10.32% | 2006-07-28 | 2026-04-16 |
| CVE-2005-2486 | SQL injection vulnerability in mod_forum/read_message.php in PortailPHP allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php with the affiche parameter set to "Forum-read_mess", a different vulnerability than CVE-2005-1701. | [email protected] | 7.5 | 0.33% | 2005-08-07 | 2026-04-16 |
| CVE-2005-1701 | SQL injection vulnerability in PortailPHP 1.3 allows remote attackers to execute arbitrary SQL commands via the id parameter to the (1) News, (2) File, (3) Liens, or (4) Faq modules. | [email protected] | 7.5 | 0.33% | 2005-05-24 | 2026-04-16 |