CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78449  CVE-2015-1172  Candidate  Unrestricted file upload vulnerability in admin/upload-file.php in the Holding Pattern theme (aka holding_pattern) 0.6 and earlier for WordPress allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a direct request to the file in an unspecified directory.  Assigned (20150117)  None (candidate not yet proposed)    View
33105  CVE-2008-2988  Candidate  Unrestricted file upload vulnerability in admin/upload.php in Benja CMS 0.1 allows remote attackers to upload and execute arbitrary PHP files via unspecified vectors, followed by a direct request to the file in billeder/.  Assigned (20080702)  None (candidate not yet proposed)    View
36729  CVE-2008-6612  Candidate  Unrestricted file upload vulnerability in admin/uploader.php in Minimal ABlog 0.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in img/.  Assigned (20090406)  None (candidate not yet proposed)    View
39044  CVE-2009-1609  Candidate  Unrestricted file upload vulnerability in admin/uploadform.asp in Battle Blog 1.25 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file.  Assigned (20090511)  None (candidate not yet proposed)    View
63537  CVE-2013-3590  Candidate  Unrestricted file upload vulnerability in admin/uploadImage.html in SearchBlox before 7.5 build 1 allows remote attackers to execute arbitrary code by uploading an executable file with the image/jpeg content type, and then accessing this file via unspecified vectors, as demonstrated by access to a JSP file.  Assigned (20130521)  None (candidate not yet proposed)    View

Page 18726 of 20943, showing 5 records out of 104715 total, starting on record 93626, ending on 93630

Actions