CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29090 | CVE-2007-5733 | Candidate | Unrestricted file upload vulnerability in upload/upload.php in Japanese PHP Gallery Hosting, when Open directory mode is enabled, allows remote attackers to upload and execute arbitrary PHP code via a ServerPath parameter specifying a filename with a double extension. NOTE: some of these details are obtained from third party information. | Assigned (20071030) | None (candidate not yet proposed) | View | |
32765 | CVE-2008-2648 | Candidate | Unrestricted file upload vulnerability in upload/uploader.html in meBiblio 0.4.7 allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the files/ directory. | Assigned (20080610) | None (candidate not yet proposed) | View | |
56818 | CVE-2012-3575 | Candidate | Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/rbxslider. | Assigned (20120615) | None (candidate not yet proposed) | View | |
8376 | CVE-2003-1552 | Candidate | Unrestricted file upload vulnerability in uploader.php in Uploader 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/. | Assigned (20080307) | None (candidate not yet proposed) | View | |
68471 | CVE-2014-10021 | Candidate | Unrestricted file upload vulnerability in UploadHandler.php in the WP Symposium plugin 14.11 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in server/php/. | Assigned (20150113) | None (candidate not yet proposed) | View |
Page 18781 of 20943, showing 5 records out of 104715 total, starting on record 93901, ending on 93905