Preprojects.Com develops a focused line of business-management applications spanning courier-and-cargo logistics, hospitality, and retail environments, with a durable signal centered on web-application input-handling issues including cross-site scripting and SQL injection. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Preprojects.Com over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0744HIGH SQL injection vulnerability in user_login.asp in PreProjects.com Pre Hotels & Resorts Management System allows remote attackers to execute arbitrary SQL commands via the login page | Feb 13, 2008 | 7.5 | 30 | NO | YES |
CVE-2008-6054MEDIUM PreProjects Pre Courier and Cargo Business stores dbcourior.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct | Feb 4, 2009 | 5.0 | 15 | NO | NO |
CVE-2006-2669MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.ph | May 30, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Preprojects.Com.
Media articles that mention a CVE ID that affects a product developed by Preprojects.Com — matched by CVE ID, not by vendor name.