CVE List

Id CVE No. Status Description Phase Votes Comments Actions
40617  CVE-2009-3182  Candidate  Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in user/File/.  Assigned (20090911)  None (candidate not yet proposed)    View
38882  CVE-2009-1447  Candidate  Unrestricted file upload vulnerability in admin/editor/image.php in e-cart.biz Free Shopping Cart allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/.  Assigned (20090427)  None (candidate not yet proposed)    View
36885  CVE-2008-6768  Candidate  Unrestricted file upload vulnerability in admin/editor/images.php in K&S Shopsoftware allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/upload/.  Assigned (20090429)  None (candidate not yet proposed)    View
32691  CVE-2008-2574  Candidate  Unrestricted file upload vulnerability in admin/Editor/imgupload.php in FlashBlog 0.31 beta allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the file in tus_imagenes/.  Assigned (20080606)  None (candidate not yet proposed)    View
78336  CVE-2015-1059  Candidate  Unrestricted file upload vulnerability in admin/files/add in AdaptCMS 3.0.3 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a direct request to the file in /app/webroot/uploads.  Assigned (20150116)  None (candidate not yet proposed)    View

Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620

Actions