CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8080 | CVE-2003-1256 | Candidate | aff_liste_langue.php in E-theni allows remote attackers to execute arbitrary PHP code by modifying the rep_include parameter to reference a URL on a remote web server that contains para_langue.php. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8079 | CVE-2003-1255 | Candidate | add_bookmark.php in Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to add arbitrary bookmarks as other users using a modified auth_user_id parameter. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8078 | CVE-2003-1254 | Candidate | Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common.php, or (3) apb_view_class.php by modifying the APB_SETTINGS parameter to reference a URL on a remote web server that contains the code. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8077 | CVE-2003-1253 | Candidate | PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbitrary PHP code viaa URL in the prefix parameter to (1) dbase.php, (2) config.php, or (3) common.load.php. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8076 | CVE-2003-1252 | Candidate | register.php in S8Forum 3.0 allows remote attackers to execute arbitrary PHP commands by creating a user whose name ends in a .php extension and entering the desired commands into the E-mail field, which creates a web-accessible .php file that can be called by the attacker, as demonstrated using a "system($cmd)" E-mail address with a "any_name.php" username. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 19328 of 20943, showing 5 records out of 104715 total, starting on record 96636, ending on 96640