CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91869 | CVE-2016-5050 | Candidate | Unrestricted file upload vulnerability in chat/sendfile.aspx in ReadyDesk 9.1 allows remote attackers to execute arbitrary code by uploading and requesting a .aspx file. | Assigned (20160526) | None (candidate not yet proposed) | View | |
36736 | CVE-2008-6619 | Candidate | Unrestricted file upload vulnerability in class/ApplyDB.php in ClassSystem 2.3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in class/UploadHomepage/. | Assigned (20090406) | None (candidate not yet proposed) | View | |
37065 | CVE-2008-6948 | Candidate | Unrestricted file upload vulnerability in Collabtive 0.4.8 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension and using a text/plain MIME type, then accessing it via a direct request to the file in files/, related to (1) the showproject action in managefile.php or (2) the Messages feature. | Assigned (20090811) | None (candidate not yet proposed) | View | |
29094 | CVE-2007-5737 | Candidate | Unrestricted file upload vulnerability in component/upload.jsp in Korean GHBoard allows remote attackers to upload arbitrary files via unspecified vectors, probably involving a direct request. | Assigned (20071030) | None (candidate not yet proposed) | View | |
27967 | CVE-2007-4610 | Candidate | Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to upload and execute arbitrary PHP files in images/, possibly related to config/admin.php. | Assigned (20070830) | None (candidate not yet proposed) | View |
Page 18732 of 20943, showing 5 records out of 104715 total, starting on record 93656, ending on 93660