CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
21778 | CVE-2006-5674 | Candidate | Multiple PHP remote file inclusion vulnerabilities in miniBB 2.0.2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the pathToFiles parameter to (1) bb_func_forums.php, (2) bb_functions.php, or (3) the RSS plugin. | Assigned (20061102) | None (candidate not yet proposed) | View | |
87314 | CVE-2016-1000016 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20160712) | None (candidate not yet proposed) | View | |
22034 | CVE-2006-5930 | Candidate | Multiple PHP remote file inclusion vulnerabilities in Aigaion Web based bibliography management system 1.2.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the DIR parameter to (1) _basicfunctions.php, or (2) pageactionauthor.php. | Assigned (20061115) | None (candidate not yet proposed) | View | |
87570 | CVE-2016-10072 | Candidate | ** DISPUTED ** WampServer 3.0.6 has two files called "wampmanager.exe" and "unins000.exe" with a weak ACL for Modify. This could potentially allow an authorized but non-privileged local user to execute arbitrary code with elevated privileges on the system. To properly exploit this vulnerability, the local attacker must insert an executable file called wampmanager.exe or unins000.exe and replace the original files. The next time one of these programs is launched by a more privileged user, malicious code chosen by the local attacker will run. NOTE: the vendor disputes the relevance of this report, taking the position that a configuration in which ""someone" (an attacker) is able to replace files on a PC" is not "the fault of WampServer." | Assigned (20161226) | None (candidate not yet proposed) | View | |
22290 | CVE-2006-6186 | Candidate | Multiple directory traversal vulnerabilities in enomphp 4.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to (1) config.php, (2) ranklv_inside.php, (3) rankml_inside.php, and (4) admin/Restore/config.php. | Assigned (20061130) | None (candidate not yet proposed) | View |
Page 1464 of 20943, showing 5 records out of 104715 total, starting on record 7316, ending on 7320