CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33709  CVE-2008-3592  Candidate  Unrestricted file upload vulnerability in the File Manager in the admin panel in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension to a directory specified in the destination parameter, then accessing the uploaded file via a direct request, as demonstrated using workspace/masters/.  Assigned (20080811)  None (candidate not yet proposed)    View
36658  CVE-2008-6541  Candidate  Unrestricted file upload vulnerability in the file manager module in DotNetNuke before 4.8.2 allows remote administrators to upload arbitrary files and gain privileges to the server via unspecified vectors.  Assigned (20090329)  None (candidate not yet proposed)    View
94722  CVE-2016-7902  Candidate  Unrestricted file upload vulnerability in the fileUnzip->unzip method in Dotclear before 2.10.3 allows remote authenticated users with permissions to manage media items to execute arbitrary code by uploading a ZIP file containing a file with a crafted extension, as demonstrated by .php.txt or .php%20.  Assigned (20160909)  None (candidate not yet proposed)    View
30574  CVE-2008-0457  Candidate  Unrestricted file upload vulnerability in the FileUpload class running on the Symantec LiveState Apache Tomcat server, as used by Symantec Backup Exec System Recovery Manager 7.0 and 7.0.1, allows remote attackers to upload and execute arbitrary JSP files via unknown vectors.  Assigned (20080124)  None (candidate not yet proposed)    View
32105  CVE-2008-1988  Candidate  Unrestricted file upload vulnerability in the file_upload function in core/misc.class.php in EncapsGallery 2.0.2 allows remote authenticated administrators to upload and execute arbitrary PHP files by uploading a file with an executable extension, then accessing it via a direct request to the file in the rwx_gallery directory. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20080427)  None (candidate not yet proposed)    View

Page 18769 of 20943, showing 5 records out of 104715 total, starting on record 93841, ending on 93845

Actions