Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Dynpg MEDIUM 5.1
CVE-2010-1299EPSS 11%

Multiple PHP remote file inclusion vulnerabilities in DynPG CMS 4.1.0, and possibly earlier, when magic_quotes_gpc is disabled and register_globals i…

Fix: after 4.1.0
Fix from $1,600 2010-04-07
Gnat Tgp HIGH 7.5
CVE-2010-1272

PHP remote file inclusion vulnerability in includes/tgpinc.php in Gnat-TGP 1.2.20 and earlier allows remote attackers to execute arbitrary PHP code v…

Fix: after 1.2.20
Fix from $1,950 2010-04-06
Webmaid Cms HIGH 7.5
CVE-2010-1266

Multiple PHP remote file inclusion vulnerabilities in WebMaid CMS 0.2-6 Beta and earlier allow remote attackers to execute arbitrary PHP code via a U…

Fix: after 0.2-6
Fix from $1,950 2010-04-06
Firefox HIGH 7.6
CVE-2010-0178

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, does not prevent applets from interpreting mou…

Fix: after 3.0.17
Fix from $1,950 2010-04-05
Firefox MEDIUM 5.1
CVE-2010-0179

Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, do…

Fix: after 3.0.17
Fix from $1,600 2010-04-05
Acrobat Reader HIGH 9.3
CVE-2009-4764

Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to t…

Mitigation only
Fix from $1,950 2010-04-05
Foxit Reader HIGH 9.3
CVE-2010-1239EPSS 8%

Foxit Reader before 3.2.1.0401 allows remote attackers to (1) execute arbitrary local programs via a certain "/Type /Action /S /Launch" sequence, and…

Fix: after 3.2.0.0303
Fix from $1,950 2010-04-05
Internet Explorer HIGH 9.3
CVE-2010-0267EPSS 34%

Microsoft Internet Explorer 6, 6 SP1, and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by ac…

Patch available
Fix from $1,950 2010-03-31
Internet Explorer HIGH 9.3
CVE-2010-0490EPSS 29%

Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by…

Patch available
Fix from $1,950 2010-03-31
Internet Explorer HIGH 8.1
CVE-2010-0492EPSS 28%

Use-after-free vulnerability in mstime.dll in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via vectors related to …

Patch available
Fix from $1,950 2010-03-31
Internet Explorer HIGH 9.3
CVE-2010-0807EPSS 29%

Microsoft Internet Explorer 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a dele…

Patch available
Fix from $1,950 2010-03-31
Notsopureedit MEDIUM 6.8
CVE-2010-1216

PHP remote file inclusion vulnerability in templates/template.php in notsoPureEdit 1.4.1 and earlier, when register_globals is enabled, allows remote…

Fix: after 1.4.1
Fix from $1,600 2010-03-30
Safari HIGH 9.3
CVE-2010-1176EPSS 9%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari HIGH 9.3
CVE-2010-1177EPSS 7%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Safari HIGH 9.3
CVE-2010-1180EPSS 8%

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…

No fix yet
Fix from $1,950 2010-03-29
Skadate Online Dating Software MEDIUM 6.8
CVE-2009-4739

PHP remote file inclusion vulnerability in index.php in SkaDate Dating allows remote attackers to execute arbitrary PHP code via a URL in the languag…

No fix yet
Fix from $1,600 2010-03-26
Aiocp HIGH 7.5
CVE-2009-4747

PHP remote file inclusion vulnerability in public/code/cp_html2xhtmlbasic.php in All In One Control Panel (AIOCP) 1.4.001 allows remote attackers to …

No fix yet
Fix from $1,950 2010-03-26
Top Paidmailer MEDIUM 6.8
CVE-2009-4750

PHP remote file inclusion vulnerability in home.php in Top Paidmailer allows remote attackers to execute arbitrary PHP code via a URL in the page par…

No fix yet
Fix from $1,600 2010-03-26
Swinger Club Portal HIGH 7.5
CVE-2009-4752

PHP remote file inclusion vulnerability in anzeiger/start.php in Swinger Club Portal allows remote attackers to execute arbitrary PHP code via a URL …

No fix yet
Fix from $1,950 2010-03-26
Pulse Cms MEDIUM 6.0
CVE-2010-0988

Multiple unspecified vulnerabilities in Pulse CMS before 1.2.3 allow (1) remote attackers to write to arbitrary files and execute arbitrary PHP code …

Fix: after 1.2.2
Fix from $1,600 2010-03-26
Safari HIGH 10.0
CVE-2010-1120EPSS 5%

Unspecified vulnerability in Safari 4 on Apple Mac OS X 10.6 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated b…

Mitigation only
Fix from $1,950 2010-03-25
Firefox HIGH 10.0
CVE-2010-1121EPSS 6%

Mozilla Firefox 3.6.x before 3.6.3 does not properly manage the scopes of DOM nodes that are moved from one document to another, which allows remote …

Mitigation only
Fix from $1,950 2010-03-25
Advertisementmanager HIGH 7.5
CVE-2010-1106

PHP remote file inclusion vulnerability in cgi/index.php in AdvertisementManager 3.1.0 allows remote attackers to execute arbitrary PHP code via a UR…

No fix yet
Fix from $1,950 2010-03-25
Web Server Creator Web Portal HIGH 7.5
CVE-2010-1114

Multiple PHP remote file inclusion vulnerabilities in Web Server Creator - Web Portal 0.1 allow remote attackers to execute arbitrary PHP code via a …

No fix yet
Fix from $1,950 2010-03-25
Osdate MEDIUM 5.1
CVE-2010-1055

Multiple PHP remote file inclusion vulnerabilities in osDate 2.1.9 and 2.5.4, when magic_quotes_gpc is disabled and register_globals is enabled, allo…

No fix yet
Fix from $1,600 2010-03-23
Rezervi MEDIUM 6.8
CVE-2010-0983

PHP remote file inclusion vulnerability in include/mail.inc.php in Rezervi 3.0.2 and earlier, when register_globals is enabled, allows remote attacke…

Fix: after 3.0.2
Fix from $1,600 2010-03-16
Dev\!l\'z Clanportal MEDIUM 6.8
CVE-2010-0966

PHP remote file inclusion vulnerability in inc/config.php in deV!L`z Clanportal (DZCP) 1.5.2, when register_globals is enabled, allows remote attacke…

No fix yet
Fix from $1,600 2010-03-16
Phpcityportal HIGH 7.5
CVE-2010-0975

PHP remote file inclusion vulnerability in external.php in PHPCityPortal allows remote attackers to execute arbitrary PHP code via a URL in the url p…

No fix yet
Fix from $1,950 2010-03-16
Safari HIGH 9.3
CVE-2010-0043EPSS 6%

ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service …

Fix: after 4.0.4
Fix from $1,950 2010-03-15
Safari HIGH 9.3
CVE-2010-0046EPSS 6%

The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a d…

Fix: after 4.0.4
Fix from $1,950 2010-03-15