CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
39050 | CVE-2009-1615 | Candidate | Unrestricted file upload vulnerability in Leap CMS 0.1.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via an admin.system.files (aka Manage Files) request to the default URI, then accessing the file via a direct request. | Assigned (20090511) | None (candidate not yet proposed) | View | |
20779 | CVE-2006-4675 | Candidate | Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to upload executable files into the data/media folder via unspecified vectors. | Assigned (20060911) | None (candidate not yet proposed) | View | |
35849 | CVE-2008-5732 | Candidate | Unrestricted file upload vulnerability in lib/image_upload.php in KafooeyBlog 1.55b allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. | Assigned (20081226) | None (candidate not yet proposed) | View | |
76774 | CVE-2014-9473 | Candidate | Unrestricted file upload vulnerability in lib_nonajax.php in the CformsII plugin 14.7 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension via the cf_uploadfile2[] parameter, then accessing the file via a direct request to the file in the default upload directory. | Assigned (20150103) | None (candidate not yet proposed) | View | |
26556 | CVE-2007-3199 | Candidate | Unrestricted file upload vulnerability in Link Request Contact Form 3.4 allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension and an image content type, as demonstrated by image/jpeg. | Assigned (20070612) | None (candidate not yet proposed) | View |
Page 18750 of 20943, showing 5 records out of 104715 total, starting on record 93746, ending on 93750