Anonymous Login
2022-12-06 10:21 PST

View Issue Details Jump to Notes ]
IDProjectCategoryView StatusLast Update
0000660Third-party ModulesOtherpublic2014-06-13 16:01
Assigned To 
PrioritynormalSeverityfeatureReproducibilityhave not tried
Product Version 
Target VersionFixed in Version 
Summary0000660: Integrate the work done by CYCLOPS to achieve CMMI compliance
DescriptionIn 2006 CYCLOPS in Brazil made 700 hours of PHP coding to implenent CMMI compliance on top of dotproject. Can you incoroprate that work into web2porject
TagsNo tags attached.
Attached Files




caseydk (administrator)


I've explored this module a bit and from the paper, it looks promising. Unfortunately, the module itself is based on dotProject circa 2006. Therefore, all of the security vulnerabilities and performance issues that were there are still there. Further, they've added just about every insecure module and extension there is. In 10 minutes I've found 14 SQL injection issues.

On the plus side, some of what they have is pretty solid and offers some great functionality. Unfortunately, they hacked core to do it and the documentation is in Portuguese, so pulling out pieces will be difficult at best. I've explored the demo for an idea of what functionality would be particularly useful first but it is mostly in Portuguese too.

Over the Christmas break I'll take a deeper look at things but any insights would be appreciated.

-Issue History
Date Modified Username Field Change
2010-12-21 05:10 tomward New Issue
2010-12-21 05:10 tomward File Added: dotproject_plus.pdf
2010-12-21 06:52 caseydk Note Added: 0001486
2013-11-22 10:35 caseydk Category -- none specified -- => Core Infrastructure
2014-04-05 17:25 caseydk Project Pending Requests => Third-party Modules
2014-05-20 16:41 caseydk Category General => Other
2014-06-13 16:01 caseydk Severity minor => feature
+Issue History