CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22567  CVE-2006-6463  Candidate  Unrestricted file upload vulnerability in admin/add.php in Midicart allows remote authenticated users to upload arbitrary .php files, and possibly other files, to the images/ directory under the web root.  Assigned (20061211)  None (candidate not yet proposed)    View
26134  CVE-2007-2777  Candidate  Unrestricted file upload vulnerability in admin/addsptemplate.php in AlstraSoft Template Seller Pro 3.25 and earlier allows remote attackers to execute arbitrary PHP code via an arbitrary .php filename in the zip parameter, which is created under sptemplates/.  Assigned (20070521)  None (candidate not yet proposed)    View
40608  CVE-2009-3173  Candidate  Unrestricted file upload vulnerability in admin/add_album.php in The Rat CMS Alpha 2 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/.  Assigned (20090911)  None (candidate not yet proposed)    View
13905  CVE-2005-2699  Candidate  Unrestricted file upload vulnerability in admin/admin.php in PHPKit 1.6.1 allows remote authenticated administrators to execute arbitrary PHP code by uploading a .php file to the content/images/ directory using images.php. NOTE: if a PHPKit administrator must already have access to the end system to install or modify configuration of the product, then this issue might not cross privilege boundaries, and should not be included in CVE.  Assigned (20050825)  None (candidate not yet proposed)    View
44737  CVE-2010-2153  Candidate  Unrestricted file upload vulnerability in admin/code/tce_functions_tcecode_editor.php in TCExam 10.1.006 and 10.1.007 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in cache/.  Assigned (20100603)  None (candidate not yet proposed)    View

Page 18723 of 20943, showing 5 records out of 104715 total, starting on record 93611, ending on 93615

Actions