NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
77786 | CVE-2001-0308 | UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
71077 | CVE-2004-0650 | UploadServlet in Cisco Collaboration Server (CCS) running ServletExec before 3.0E allows remote attackers to upload and execute arbitrary files via a direct call to the UploadServlet URL. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
77910 | CVE-2001-0437 | upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to upload_file. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
9476 | CVE-2011-2745 | upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict the file extensions of uploaded files, which allows remote authenticated users to upload a .php file, and consequently execute arbitrary PHP code, via a write_post action to the default URI under admin/. | 2 | 6.5 | Medium | 2017-01-07 | 2011-09-21 | View | |
68422 | CVE-2005-2733 | upload_img_cgi.php in Simple PHP Blog (SPHPBlog) does not properly restrict file extensions of uploaded files, which could allow remote attackers to execute arbitrary code. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16783 of 17672, showing 5 records out of 88360 total, starting on record 83911, ending on 83915