CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
36635 | CVE-2008-6518 | Candidate | Unrestricted file upload vulnerability in the profile feature in VidiScript allows registered remote authenticated users to execute arbitrary code by uploading a PHP file as an Avatar, then accessing the avatar via a direct request. | Assigned (20090325) | None (candidate not yet proposed) | View | |
29077 | CVE-2007-5720 | Candidate | Unrestricted file upload vulnerability in the profiles script in ProfileCMS 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors involving creation of a profile. | Assigned (20071030) | None (candidate not yet proposed) | View | |
23862 | CVE-2007-0505 | Candidate | Unrestricted file upload vulnerability in the Project issue tracking 4.7.0 through 5.x before 20070123, a module for Drupal, allows remote authenticated users to execute arbitrary code by attaching a file with executable or multiple extensions to a project issue. | Assigned (20070125) | None (candidate not yet proposed) | View | |
66669 | CVE-2013-6722 | Candidate | Unrestricted file upload vulnerability in the Registration/Edit My Profile portlet in IBM WebSphere Portal 7.x before 7.0.0.2 CF27 and 8.x through 8.0.0.1 CF09 allows remote attackers to cause a denial of service or modify data via unspecified vectors. | Assigned (20131108) | None (candidate not yet proposed) | View | |
28174 | CVE-2007-4817 | Candidate | Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .php.jpg, which creates an accessible file under img_original/. | Assigned (20070911) | None (candidate not yet proposed) | View |
Page 18773 of 20943, showing 5 records out of 104715 total, starting on record 93861, ending on 93865