CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
24909 | CVE-2007-1552 | Candidate | Unrestricted file upload vulnerability in usercp.php in MetaForum 0.513 Beta restricts file types based on the MIME type in the Content-type HTTP header, which allows remote attackers to upload and execute arbitrary scripts via an image MIME type with a filename containing an executable extension such as .php. | Assigned (20070320) | None (candidate not yet proposed) | View | |
39185 | CVE-2009-1750 | Candidate | Unrestricted file upload vulnerability in VidSharePro allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via unspecified vectors. | Assigned (20090521) | None (candidate not yet proposed) | View | |
64896 | CVE-2013-4949 | Candidate | Unrestricted file upload vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in the upload form"s directory in data/. | Assigned (20130729) | None (candidate not yet proposed) | View | |
37031 | CVE-2008-6914 | Candidate | Unrestricted file upload vulnerability in viewprofile.php in Zeeways ZEEPROPERTY 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a photo in a profile modification, then accessing a related file via a direct request to the file in companylogo/. | Assigned (20090807) | None (candidate not yet proposed) | View | |
24512 | CVE-2007-1155 | Candidate | Unrestricted file upload vulnerability in webSPELL allows remote authenticated administrators to upload and execute arbitrary PHP code via the add squad feature. NOTE: this issue may be an administrative feature, in which case this CVE may be REJECTED. | Assigned (20070227) | None (candidate not yet proposed) | View |
Page 18784 of 20943, showing 5 records out of 104715 total, starting on record 93916, ending on 93920