3
I Use This!
Low Activity
Analyzed 1 day ago. based on code collected 2 days ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
BDSA-2026-3100 Critical Mar 11, 2026 openDCIM is vulnerable to remote code execution (RCE) due to improper handling of the `dot` configuration parameter in `report_network_map.php`. This c more...
BDSA-2026-3099 Critical Mar 11, 2026 openDCIM is vulnerable to SQL injection (SQLi) due to improper input handling in the `Config::UpdateParameter` function. This could allow an attacker t more...
BDSA-2026-3098 Critical Mar 11, 2026 openDCIM is vulnerable to missing authorization due to improper role checks in `install.php` and `container-install.php`. This could allow an attacker more...
BDSA-2025-4636 High May 27, 2025 openDCIM through 23.04 allows SQL injection in people_depts.php because prepared statements are not used. **Note: CVE details have been utilized in ge more...
BDSA-2025-11681 High Sep 12, 2025 openDCIM is vulnerable to cross-site scripting (XSS) due to improper handling of uploaded `.svg` files. This could allow an attacker to execute arbitra more...