CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8080  CVE-2003-1256  Candidate  aff_liste_langue.php in E-theni allows remote attackers to execute arbitrary PHP code by modifying the rep_include parameter to reference a URL on a remote web server that contains para_langue.php.  Assigned (20051116)  None (candidate not yet proposed)    View
8079  CVE-2003-1255  Candidate  add_bookmark.php in Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to add arbitrary bookmarks as other users using a modified auth_user_id parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
8078  CVE-2003-1254  Candidate  Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common.php, or (3) apb_view_class.php by modifying the APB_SETTINGS parameter to reference a URL on a remote web server that contains the code.  Assigned (20051116)  None (candidate not yet proposed)    View
8077  CVE-2003-1253  Candidate  PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbitrary PHP code viaa URL in the prefix parameter to (1) dbase.php, (2) config.php, or (3) common.load.php.  Assigned (20051116)  None (candidate not yet proposed)    View
8076  CVE-2003-1252  Candidate  register.php in S8Forum 3.0 allows remote attackers to execute arbitrary PHP commands by creating a user whose name ends in a .php extension and entering the desired commands into the E-mail field, which creates a web-accessible .php file that can be called by the attacker, as demonstrated using a "system($cmd)" E-mail address with a "any_name.php" username.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 19328 of 20943, showing 5 records out of 104715 total, starting on record 96636, ending on 96640

Actions