CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
40617 | CVE-2009-3182 | Candidate | Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in user/File/. | Assigned (20090911) | None (candidate not yet proposed) | View | |
38882 | CVE-2009-1447 | Candidate | Unrestricted file upload vulnerability in admin/editor/image.php in e-cart.biz Free Shopping Cart allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/. | Assigned (20090427) | None (candidate not yet proposed) | View | |
36885 | CVE-2008-6768 | Candidate | Unrestricted file upload vulnerability in admin/editor/images.php in K&S Shopsoftware allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/upload/. | Assigned (20090429) | None (candidate not yet proposed) | View | |
32691 | CVE-2008-2574 | Candidate | Unrestricted file upload vulnerability in admin/Editor/imgupload.php in FlashBlog 0.31 beta allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the file in tus_imagenes/. | Assigned (20080606) | None (candidate not yet proposed) | View | |
78336 | CVE-2015-1059 | Candidate | Unrestricted file upload vulnerability in admin/files/add in AdaptCMS 3.0.3 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a direct request to the file in /app/webroot/uploads. | Assigned (20150116) | None (candidate not yet proposed) | View |
Page 18724 of 20943, showing 5 records out of 104715 total, starting on record 93616, ending on 93620