CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
38918 | CVE-2009-1483 | Candidate | Unrestricted file upload vulnerability in upload-file.php in Adam Patterson Studio Lounge Address Book 2.5, as reachable from index2.php, allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in profiles/. | Assigned (20090429) | None (candidate not yet proposed) | View | |
21515 | CVE-2006-5411 | Candidate | Unrestricted file upload vulnerability in upload.php for Free Web Publishing System (FreeWPS), possibly 2.11 and earlier, allows remote attackers to upload and execute arbitrary PHP programs. | Assigned (20061019) | None (candidate not yet proposed) | View | |
28118 | CVE-2007-4761 | Candidate | Unrestricted file upload vulnerability in upload.php in Barbo91 1.1 allows remote attackers to upload and execute arbitrary code via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20070907) | None (candidate not yet proposed) | View | |
42863 | CVE-2010-0279 | Candidate | Unrestricted file upload vulnerability in upload.php in BTS-GI Read excel 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory. NOTE: some of these details are obtained from third party information. | Assigned (20100112) | None (candidate not yet proposed) | View | |
33298 | CVE-2008-3181 | Candidate | Unrestricted file upload vulnerability in upload.php in ContentNow CMS 1.4.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/. | Assigned (20080715) | None (candidate not yet proposed) | View |
Page 18777 of 20943, showing 5 records out of 104715 total, starting on record 93881, ending on 93885