Portalapp

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    3
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2008-4612

    Cross-site scripting (XSS) vulnerability in PortalApp 4.0 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter to (1) forums.asp and (2) content.asp.

    Last Modified: Apr 23, 2026
    Published: Oct 20, 2008

    CVE-2008-4613

    SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via the sortby parameter.

    Last Modified: Apr 23, 2026
    Published: Oct 20, 2008

    CVE-2008-4614

    PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies.

    Last Modified: Apr 23, 2026
    Published: Oct 20, 2008

    CVE-2008-4615

    Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors.

    Last Modified: Apr 23, 2026
    Published: Oct 20, 2008

    CVE-2007-3252

    PortalApp stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for 8691.mdb, a different vector than CVE-2004-1786.

    Last Modified: Apr 23, 2026
    Published: Jun 18, 2007
    Items Per Page
    Portalapp Vulnerabilities & Security CVEs | CVE-DB