NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48928 | CVE-2009-1659 | Unrestricted file upload vulnerability in admin/uploadimage.php in eLitius 1.0 allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files via an avatar file with an accepted Content-Type such as image/gif, then requesting the file in admin/banners/. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-18 | View | |
| 65422 | CVE-2006-6879 | Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter. | 2 | 6 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 57307 | CVE-2007-5231 | Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to upload and execute arbitrary .php files by sending a modified MIME type. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2007-5230. | 2 | 4.6 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 5004 | CVE-2008-5220 | Unrestricted file upload vulnerability in admin/upload_form.php in wPortfolio 0.3 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in admin/tmp/. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
| 63622 | CVE-2006-5016 | Unrestricted file upload vulnerability in admin/x_image.php in Szava Gyula and Csaba Tamas e-Vision CMS, probably 1.0, allows remote attackers to upload arbitrary files to the /imagebank directory. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 15364 of 17672, showing 5 records out of 88360 total, starting on record 76816, ending on 76820