CVE List

Id CVE No. Status Description Phase Votes Comments Actions
24219  CVE-2007-0862  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in gnopaste 0.5.3 and earlier allows remote attackers to execute arbitrary PHP code via the GNP_REAL_PATH parameter. NOTE: CVE and a third party dispute this issue, since GNP_REAL_PATH is a constant, not a variable.  Assigned (20070208)  None (candidate not yet proposed)    View
25429  CVE-2007-2072  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Ivan Gallery Script 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: this issue has been disputed by third party researchers for 0.3, stating that the dir variable is properly initialized before use.  Assigned (20070417)  None (candidate not yet proposed)    View
20532  CVE-2006-4428  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Jupiter CMS 1.1.5 allows remote attackers to execute arbitrary PHP code via a URL in the template parameter. NOTE: CVE disputes this claim, since the $template variable is defined as a static value before it is referenced in an include statement.  Assigned (20060828)  None (candidate not yet proposed)    View
22389  CVE-2006-6285  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) 1.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the externalConfig parameter. NOTE: CVE and other third parties dispute this vulnerability because $externalConfig is defined before use.  Assigned (20061204)  None (candidate not yet proposed)    View
25435  CVE-2007-2078  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, since the path_to_folder variable is initialized before use.  Assigned (20070417)  None (candidate not yet proposed)    View

Page 48 of 20943, showing 5 records out of 104715 total, starting on record 236, ending on 240

Actions