CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39050  CVE-2009-1615  Candidate  Unrestricted file upload vulnerability in Leap CMS 0.1.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via an admin.system.files (aka Manage Files) request to the default URI, then accessing the file via a direct request.  Assigned (20090511)  None (candidate not yet proposed)    View
20779  CVE-2006-4675  Candidate  Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to upload executable files into the data/media folder via unspecified vectors.  Assigned (20060911)  None (candidate not yet proposed)    View
35849  CVE-2008-5732  Candidate  Unrestricted file upload vulnerability in lib/image_upload.php in KafooeyBlog 1.55b allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file.  Assigned (20081226)  None (candidate not yet proposed)    View
76774  CVE-2014-9473  Candidate  Unrestricted file upload vulnerability in lib_nonajax.php in the CformsII plugin 14.7 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension via the cf_uploadfile2[] parameter, then accessing the file via a direct request to the file in the default upload directory.  Assigned (20150103)  None (candidate not yet proposed)    View
26556  CVE-2007-3199  Candidate  Unrestricted file upload vulnerability in Link Request Contact Form 3.4 allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension and an image content type, as demonstrated by image/jpeg.  Assigned (20070612)  None (candidate not yet proposed)    View

Page 18750 of 20943, showing 5 records out of 104715 total, starting on record 93746, ending on 93750

Actions