CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82958  CVE-2015-5681  Candidate  Unrestricted file upload vulnerability in upload.php in the Powerplay Gallery plugin 3.3 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in *_uploadfolder/big/.  Assigned (20150727)  None (candidate not yet proposed)    View
38037  CVE-2009-0602  Candidate  Unrestricted file upload vulnerability in upload.php in WikkiTikkiTavi 1.11 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in img/.  Assigned (20090216)  None (candidate not yet proposed)    View
36886  CVE-2008-6769  Candidate  Unrestricted file upload vulnerability in upload.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file.  Assigned (20090429)  None (candidate not yet proposed)    View
25132  CVE-2007-1775  Candidate  Unrestricted file upload vulnerability in upload.php3 in JBrowser 2.4 and earlier allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070329)  None (candidate not yet proposed)    View
22442  CVE-2006-6338  Candidate  Unrestricted file upload vulnerability in upload/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to upload and execute arbitrary .php files by embedding PHP code in a JPEG or GIF file that is uploaded to inc/images/uploads/userpics/.  Assigned (20061206)  None (candidate not yet proposed)    View

Page 18780 of 20943, showing 5 records out of 104715 total, starting on record 93896, ending on 93900

Actions