Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Sourdough HIGH 7.5
CVE-2009-0456

PHP remote file inclusion vulnerability in examples/example_clientside_javascript.php in patForms, as used in Sourdough 0.3.5, allows remote attacker…

No fix yet
Fix from $1,950 2009-02-10
Technote MEDIUM 6.8
CVE-2009-0441

PHP remote file inclusion vulnerability in skin_shop/standard/2_view_body/body_default.php in TECHNOTE 7.2, when register_globals is enabled, allows …

No fix yet
Fix from $1,600 2009-02-10
Grboard HIGH 7.5
CVE-2009-0444

Multiple PHP remote file inclusion vulnerabilities in GRBoard 1.8, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote at…

No fix yet
Fix from $1,950 2009-02-10
Realtor 747 HIGH 7.5
CVE-2009-0495

PHP remote file inclusion vulnerability in include/define.php in REALTOR 747 4.11 allows remote attackers to execute arbitrary PHP code via a URL in …

No fix yet
Fix from $1,950 2009-02-10
Realplayer HIGH 9.3
CVE-2009-0375EPSS 6%

Buffer overflow in a DLL file in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, Re…

Mitigation only
Fix from $1,950 2009-02-08
Meet\#web HIGH 7.5
CVE-2008-6066

Multiple PHP remote file inclusion vulnerabilities in Meet#Web 0.8 allow remote attackers to execute arbitrary PHP code via a URL in the root_path pa…

No fix yet
Fix from $1,950 2009-02-05
Phplist HIGH 7.5
CVE-2009-0422EPSS 6%

Dynamic variable evaluation vulnerability in lists/admin.php in phpList 2.10.8 and earlier, when register_globals is disabled, allows remote attacker…

Fix: after 2.10.8
Fix from $1,950 2009-02-05
Basebuilder HIGH 7.5
CVE-2008-6036

PHP remote file inclusion vulnerability in main.inc.php in BaseBuilder 2.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a …

Fix: after 2.0.1
Fix from $1,950 2009-02-03
Elastic Computing Platform HIGH 7.2
CVE-2009-0390

Argument injection vulnerability in Enomaly Elastic Computing Platform (ECP), formerly Enomalism, before 2.1.1 allows local users to send signals to …

Fix: after 2.1
Fix from $1,950 2009-02-02
Xnova HIGH 7.5
CVE-2008-6022

PHP remote file inclusion vulnerability in includes/todofleetcontrol.php in an older version of Xnova, possibly 0.8 sp1, allows remote attackers to e…

No fix yet
Fix from $1,950 2009-02-02
Xnova HIGH 7.5
CVE-2008-6023

PHP remote file inclusion vulnerability in includes/todofleetcontrol.php in a newer version of Xnova, possibly 0.8 sp1, allows remote attackers to ex…

Fix: after 0.8
Fix from $1,950 2009-02-02
Micronation Banking System HIGH 7.5
CVE-2008-6006

Multiple PHP remote file inclusion vulnerabilities in Micronation Banking System (minba) 1.5.0 allow remote attackers to execute arbitrary PHP code v…

No fix yet
Fix from $1,950 2009-01-30
Wbnews MEDIUM 6.8
CVE-2009-0294

Multiple PHP remote file inclusion vulnerabilities in WB News 2.0.1, when register_globals is enabled, allow remote attackers to execute arbitrary PH…

No fix yet
Fix from $1,600 2009-01-27
Phosheezy MEDIUM 6.5
CVE-2009-0275

Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code int…

No fix yet
Fix from $1,600 2009-01-26
Cctiddly HIGH 7.5
CVE-2008-5949

Multiple PHP remote file inclusion vulnerabilities in ccTiddly 1.7.4 and 1.7.6 allow remote attackers to execute arbitrary PHP code via a URL in the …

No fix yet
Fix from $1,950 2009-01-23
Phosheezy MEDIUM 6.5
CVE-2009-0251EPSS 6%

Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code int…

No fix yet
Fix from $1,600 2009-01-22
Yapbb MEDIUM 6.8
CVE-2008-5947

PHP remote file inclusion vulnerability in include/class_yapbbcooker.php in YapBB 1.2.Beta 2 allows remote attackers to execute arbitrary PHP code vi…

No fix yet
Fix from $1,600 2009-01-22
Modxcms MEDIUM 6.8
CVE-2008-5938

PHP remote file inclusion vulnerability in assets/snippets/reflect/snippet.reflect.php in MODx CMS 0.9.6.2 and earlier, when magic_quotes_gpc is disa…

Fix: after 0.9.6.2
Fix from $1,600 2009-01-22
Cfagcms HIGH 7.5
CVE-2008-5922

Multiple PHP remote file inclusion vulnerabilities in themes/default/index.php in Cant Find A Gaming CMS (CFAGCMS) 1 allow remote attackers to execut…

No fix yet
Fix from $1,950 2009-01-21
Websvn HIGH 7.5
CVE-2008-5920

The create_anchors function in utils.inc in WebSVN 1.x allows remote attackers to execute arbitrary PHP code via a crafted username that is processed…

No fix yet
Fix from $1,950 2009-01-21
Git HIGH 7.5
CVE-2008-5517EPSS 12%

The web interface in git (gitweb) 1.5.x before 1.5.6 allows remote attackers to execute arbitrary commands via shell metacharacters related to (1) gi…

Patch available
Fix from $1,950 2009-01-13
Playsms HIGH 7.5
CVE-2009-0103EPSS 10%

Multiple PHP remote file inclusion vulnerabilities in playSMS 0.9.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) apps_pa…

No fix yet
Fix from $1,950 2009-01-09
Tsunami Mp.11 2411 HIGH 10.0
CVE-2008-5866

The Proxim Wireless Tsunami MP.11 2411 with firmware 3.0.3 has public as its default SNMP read/write community, which makes it easier for remote atta…

Mitigation only
Fix from $1,950 2009-01-07
Xdg Utils MEDIUM 6.8
CVE-2009-0068

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type th…

Mitigation only
Fix from $1,600 2009-01-07
Xterm HIGH 9.3
CVE-2008-2383

CRLF injection vulnerability in xterm allows user-assisted attackers to execute arbitrary commands via LF (aka \n) characters surrounding a command n…

Mitigation only
Fix from $1,950 2009-01-02
Interactive Feederator HIGH 7.5
CVE-2008-5789EPSS 45%

Multiple PHP remote file inclusion vulnerabilities in the Recly Interactive Feederator (com_feederator) component 1.0.5 for Joomla! allow remote atta…

No fix yet
Fix from $1,950 2008-12-31
Competitions HIGH 7.5
CVE-2008-5790EPSS 36%

Multiple PHP remote file inclusion vulnerabilities in the Recly!Competitions (com_competitions) component 1.0 for Joomla! allow remote attackers to e…

No fix yet
Fix from $1,950 2008-12-31
Indiscripts Enthusiast MEDIUM 6.8
CVE-2008-5792

PHP remote file inclusion vulnerability in show_joined.php in Indiscripts Enthusiast 3.1.4, and possibly earlier, allows remote attackers to execute …

Fix: after 3.1.4
Fix from $1,600 2008-12-31
Clickheat Heatmap MEDIUM 6.8
CVE-2008-5793EPSS 24%

Multiple PHP remote file inclusion vulnerabilities in the Clickheat - Heatmap stats (com_clickheat) component 1.0.1 for Joomla! allow remote attacker…

No fix yet
Fix from $1,600 2008-12-31
Dictionary Extension HIGH 10.0
CVE-2008-5801

Unspecified vulnerability in the Dictionary (rtgdictionary) extension 0.1.9 and earlier for TYPO3 allows attackers to execute arbitrary code via unkn…

Fix: after 0.1.9
Fix from $1,950 2008-12-31