CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
59136 | CVE-2012-5893 | Candidate | Unrestricted file upload vulnerability in hava_upload.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading a file with a .php;.gif extension, then accessing it via a direct request to the file in tmp/files/. | Assigned (20121117) | None (candidate not yet proposed) | View | |
56821 | CVE-2012-3578 | Candidate | Unrestricted file upload vulnerability in html/Upload.php in the FCChat Widget plugin 2.2.13.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with a file with an executable extension followed by a safe extension, then accessing it via a direct request to the file in html/images. | Assigned (20120616) | None (candidate not yet proposed) | View | |
76435 | CVE-2014-9134 | Candidate | Unrestricted file upload vulnerability in Huawei Honor Cube Wireless Router WS860s before V100R001C02B222 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors. | Assigned (20141128) | None (candidate not yet proposed) | View | |
66279 | CVE-2013-6332 | Candidate | Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authenticated users to execute arbitrary code by uploading a .jsp file and then launching it. | Assigned (20131031) | None (candidate not yet proposed) | View | |
53972 | CVE-2012-0729 | Candidate | Unrestricted file upload vulnerability in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 allows remote authenticated users to execute arbitrary ASP.NET code by uploading a .aspx file, and then accessing it via unspecified vectors. | Assigned (20120117) | None (candidate not yet proposed) | View |
Page 18742 of 20943, showing 5 records out of 104715 total, starting on record 93706, ending on 93710