Portix PHP is a narrowly scoped PHP-based application with a modest vulnerability footprint centered on its single product line. The observed disclosures do not point to a durable weakness pattern; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Portix Php over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2002-2084MEDIUM Directory traversal vulnerability in index.php of Portix 0.4.02 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) l and (2) topic parameters. | Dec 31, 2002 | 5.0 | 25 | NO | YES |
CVE-2006-6935HIGH SQL injection vulnerability in the login component in Portix-PHP 0.4.2 allows remote attackers to execute arbitrary SQL commands via the username and passwd (password) fields. | Jan 16, 2007 | 7.5 | 19 | NO | NO |
CVE-2006-6934MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Portix-PHP 0.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) titre or (2) auteur field in a for | Jan 16, 2007 | 6.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Portix Php.
Media articles that mention a CVE ID that affects a product developed by Portix Php — matched by CVE ID, not by vendor name.