CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36635  CVE-2008-6518  Candidate  Unrestricted file upload vulnerability in the profile feature in VidiScript allows registered remote authenticated users to execute arbitrary code by uploading a PHP file as an Avatar, then accessing the avatar via a direct request.  Assigned (20090325)  None (candidate not yet proposed)    View
29077  CVE-2007-5720  Candidate  Unrestricted file upload vulnerability in the profiles script in ProfileCMS 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors involving creation of a profile.  Assigned (20071030)  None (candidate not yet proposed)    View
23862  CVE-2007-0505  Candidate  Unrestricted file upload vulnerability in the Project issue tracking 4.7.0 through 5.x before 20070123, a module for Drupal, allows remote authenticated users to execute arbitrary code by attaching a file with executable or multiple extensions to a project issue.  Assigned (20070125)  None (candidate not yet proposed)    View
66669  CVE-2013-6722  Candidate  Unrestricted file upload vulnerability in the Registration/Edit My Profile portlet in IBM WebSphere Portal 7.x before 7.0.0.2 CF27 and 8.x through 8.0.0.1 CF09 allows remote attackers to cause a denial of service or modify data via unspecified vectors.  Assigned (20131108)  None (candidate not yet proposed)    View
28174  CVE-2007-4817  Candidate  Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .php.jpg, which creates an accessible file under img_original/.  Assigned (20070911)  None (candidate not yet proposed)    View

Page 18773 of 20943, showing 5 records out of 104715 total, starting on record 93861, ending on 93865

Actions