LimeSurvey (formerly PHPSurveyor) is an open source online survey application written in PHP based on a MySQL PostgreSQL or MSSQL database. It enables users without coding knowledge to develop publish and collect responses to surveys. Surveys can include branching custom preferred layout and design (using a web template system) and can provide basic statistical analysis of survey results.
LimeSurvey Vulnerability
Critical
LimeSurvey Improper Neutralization of Formula Elements in a CSV File Vulnerability
Critical
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Critical
LimeSurvey Deserialization of Untrusted Data Vulnerability
Critical
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability
Critical
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Critical
LimeSurvey Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Critical
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
High
LimeSurvey Improper Input Validation Vulnerability
High
LimeSurvey Vulnerability
High
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability
High
LimeSurvey Incorrect Default Permissions Vulnerability
High
LimeSurvey Incorrect Default Permissions Vulnerability
High
LimeSurvey Improper Restriction of XML External Entity Reference Vulnerability
High
LimeSurvey Incorrect Permission Assignment for Critical Resource Vulnerability
High
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
LimeSurvey Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
High
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability
High
LimeSurvey Other Vulnerability
Medium
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
LimeSurvey Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
LimeSurvey Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
LimeSurvey Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
LimeSurvey Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Medium
LimeSurvey Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
LimeSurvey Improper Control of Generation of Code (Code Injection) Vulnerability
Medium
LimeSurvey Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium