CVE-2014-5130: Avolvesoftware Projectdox

Medium severity, CVSS 6.5. EPSS: 2.5% chance of exploitation in the next 30 days.

Avolve Software ProjectDox 8.1 allows remote authenticated users to obtain sensitive information from other users via vectors involving a direct access token.

Affected products

Published 2018-03-27. Last modified 2026-06-17.