CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29090  CVE-2007-5733  Candidate  Unrestricted file upload vulnerability in upload/upload.php in Japanese PHP Gallery Hosting, when Open directory mode is enabled, allows remote attackers to upload and execute arbitrary PHP code via a ServerPath parameter specifying a filename with a double extension. NOTE: some of these details are obtained from third party information.  Assigned (20071030)  None (candidate not yet proposed)    View
32765  CVE-2008-2648  Candidate  Unrestricted file upload vulnerability in upload/uploader.html in meBiblio 0.4.7 allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the files/ directory.  Assigned (20080610)  None (candidate not yet proposed)    View
56818  CVE-2012-3575  Candidate  Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/rbxslider.  Assigned (20120615)  None (candidate not yet proposed)    View
8376  CVE-2003-1552  Candidate  Unrestricted file upload vulnerability in uploader.php in Uploader 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/.  Assigned (20080307)  None (candidate not yet proposed)    View
68471  CVE-2014-10021  Candidate  Unrestricted file upload vulnerability in UploadHandler.php in the WP Symposium plugin 14.11 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in server/php/.  Assigned (20150113)  None (candidate not yet proposed)    View

Page 18781 of 20943, showing 5 records out of 104715 total, starting on record 93901, ending on 93905

Actions