CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
37030 | CVE-2008-6913 | Candidate | Unrestricted file upload vulnerability in editresume_next.php in Zeeways ZEEJOBSITE 2.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a photo in a profile edit action, then accessing the file via a direct request to jobseekers/logos/. | Assigned (20090807) | None (candidate not yet proposed) | View | |
29091 | CVE-2007-5734 | Candidate | Unrestricted file upload vulnerability in eFileMan 7.1.0.87-88 allows remote attackers to upload arbitrary files, with "uploads/upload_file." destination filenames, via unspecified vectors to upload.cgi, accessed from upload.html. | Assigned (20071030) | None (candidate not yet proposed) | View | |
57512 | CVE-2012-4269 | Candidate | Unrestricted file upload vulnerability in eFront 3.6.11 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension via an attachment in a message. | Assigned (20120813) | None (candidate not yet proposed) | View | |
37274 | CVE-2008-7157 | Candidate | Unrestricted file upload vulnerability in EkinBoard 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading an avatar file with an executable extension followed by a safe extension, then accessing it via a direct request to the file in uploaded/avatars/. | Assigned (20090902) | None (candidate not yet proposed) | View | |
42252 | CVE-2009-4817 | Candidate | Unrestricted file upload vulnerability in Element-IT Ultimate Uploader 1.3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/. | Assigned (20100427) | None (candidate not yet proposed) | View |
Page 18736 of 20943, showing 5 records out of 104715 total, starting on record 93676, ending on 93680