NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
27928  CVE-2015-7250  Absolute path traversal vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to read arbitrary files via a full pathname in the getpage parameter.    7.8  High  2017-01-19  2016-11-28  View
46146  CVE-2012-4878  Absolute path traversal vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 allows remote administrators to read arbitrary files via a full pathname in the dir parameter in a contents/Files action.    Medium  2017-01-19  2012-09-10  View
59525  CVE-2006-0795  Absolute path traversal vulnerability in convert.cgi in Quirex 2.0.2 and earlier allows remote attackers to read arbitrary files, and possibly execute arbitrary code, via the (1) quiz_head, (2) quiz_foot, and (3) template variables.    Medium  2016-12-20  2011-05-13  View
32813  CVE-2014-4941  Absolute path traversal vulnerability in Cross-RSS (wp-cross-rss) plugin 1.7 for WordPress allows remote attackers to read arbitrary files via a full pathname in the rss parameter to proxy.php.    Medium  2017-01-19  2014-07-14  View
15181  CVE-2010-3842  Absolute path traversal vulnerability in curl 7.20.0 through 7.21.1, when the --remote-header-name or -J option is used, allows remote servers to create or overwrite arbitrary files by using (backslash) as a separator of path components within the Content-disposition HTTP header.    5.8  Medium  2017-01-18  2010-10-28  View

Page 553 of 17672, showing 5 records out of 88360 total, starting on record 2761, ending on 2765

Actions