Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Centreon HIGH 7.5
CVE-2007-6485EPSS 11%

Multiple PHP remote file inclusion vulnerabilities in Centreon 1.4.1 (aka Oreon 1.4) allow remote attackers to execute arbitrary PHP code via a URL i…

No fix yet
Fix from $1,950 2007-12-20
Anon Proxy Server MEDIUM 6.8
CVE-2007-6459

Anon Proxy Server 0.100, and probably 0.101, allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the host parameter…

No fix yet
Fix from $1,600 2007-12-20
Form Tools MEDIUM 6.8
CVE-2007-6464

Multiple PHP remote file inclusion vulnerabilities in Form tools 1.5.0b allow remote attackers to execute arbitrary PHP code via a URL in the g_root_…

No fix yet
Fix from $1,600 2007-12-20
Flat Php Board HIGH 7.5
CVE-2007-6396

Direct static code injection vulnerability in index.php in Flat PHP Board 1.2 and earlier allows remote attackers to inject arbitrary PHP code via th…

No fix yet
Fix from $1,950 2007-12-17
Bitweaver MEDIUM 6.8
CVE-2007-6412

Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, allows remote attackers to in…

Fix: after 2.0.0
Fix from $1,600 2007-12-17
Squirrelmail MEDIUM 6.8
CVE-2007-6348

SquirrelMail 1.4.11 and 1.4.12, as distributed on sourceforge.net before 20071213, has been externally modified to create a Trojan Horse that introdu…

Mitigation only
Fix from $1,600 2007-12-14
Cms MEDIUM 6.8
CVE-2007-6347EPSS 7%

PHP remote file inclusion vulnerability in blocks/block_site_map.php in ViArt (1) CMS 3.3.2, (2) HelpDesk 3.3.2, (3) Shop Evaluation 3.3.2, and (4) S…

No fix yet
Fix from $1,600 2007-12-13
Citywriter MEDIUM 6.8
CVE-2007-6324EPSS 5%

PHP remote file inclusion vulnerability in head.php in CityWriter 0.9.7 allows remote attackers to execute arbitrary PHP code via a URL in the path p…

No fix yet
Fix from $1,600 2007-12-13
Fastpublish Cms MEDIUM 6.8
CVE-2007-6325EPSS 11%

PHP remote file inclusion vulnerability in adminbereich/designconfig.php in Fastpublish CMS 1.9999 allows remote attackers to execute arbitrary PHP c…

No fix yet
Fix from $1,600 2007-12-13
Ie MEDIUM 6.8
CVE-2007-5344EPSS 27%

Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via a crafted website using Javascript that creates, mod…

Mitigation only
Fix from $1,600 2007-12-12
Serweb MEDIUM 6.8
CVE-2007-6289

Multiple PHP remote file inclusion vulnerabilities in SerWeb 2.0.0 dev1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in…

Fix: after 2.0.0dev1
Fix from $1,600 2007-12-10
Phpmychat MEDIUM 5.0
CVE-2007-6296

PHP remote file inclusion vulnerability in users_popupL.php3 in phpMyChat 0.14.5 allows remote attackers to execute arbitrary PHP code via a URL in t…

Mitigation only
Fix from $1,600 2007-12-10
Openoffice HIGH 9.3
CVE-2007-4575EPSS 14%

HSQLDB before 1.8.0.9, as used in OpenOffice.org (OOo) 2 before 2.3.1, allows user-assisted remote attackers to execute arbitrary Java code via craft…

Fix: after 2.3
Fix from $1,950 2007-12-06
Jetty MEDIUM 5.0
CVE-2007-5615

CRLF injection vulnerability in Mortbay Jetty before 6.1.6rc0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response spli…

Fix: after 6.1.6rc0
Fix from $1,600 2007-12-05
Rayzz Script HIGH 7.5
CVE-2007-6229

PHP remote file inclusion vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote attackers to execute arbitrar…

No fix yet
Fix from $1,950 2007-12-04
Tellmatic HIGH 7.5
CVE-2007-6231

Multiple PHP remote file inclusion vulnerabilities in tellmatic 1.0.7 allow remote attackers to execute arbitrary PHP code via a URL in the tm_includ…

No fix yet
Fix from $1,950 2007-12-04
P.mapper MEDIUM 6.8
CVE-2007-6191

Multiple PHP remote file inclusion vulnerabilities in Armin Burger p.mapper 3.2.0 beta3 allow remote attackers to execute arbitrary PHP code via a UR…

No fix yet
Fix from $1,600 2007-11-30
Php Con HIGH 7.5
CVE-2007-6177

PHP remote file inclusion vulnerability in Exchange/include.php in PHP_CON 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the…

No fix yet
Fix from $1,950 2007-11-30
Toolbox MEDIUM 6.8
CVE-2007-6139

PHP remote file inclusion vulnerability in index.php in Mp3 ToolBox 1.0 beta 5 allows remote attackers to execute arbitrary PHP code via a URL in the…

No fix yet
Fix from $1,600 2007-11-27
Iapr Commence MEDIUM 6.8
CVE-2007-6147

Multiple PHP remote file inclusion vulnerabilities in IAPR COMMENCE 1.3 allow remote attackers to execute arbitrary PHP code via a URL in the (a) php…

No fix yet
Fix from $1,600 2007-11-27
Talkback MEDIUM 6.8
CVE-2007-6105EPSS 7%

Multiple PHP remote file inclusion vulnerabilities in TalkBack 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the (1) langua…

No fix yet
Fix from $1,600 2007-11-23
Sciurus Hosting Panel HIGH 9.3
CVE-2007-6082

Direct static code injection vulnerability in acp/savenews.php in Sciurus Hosting Panel, possibly 2.0.3, allows remote attackers to inject arbitrary …

No fix yet
Fix from $1,950 2007-11-22
Phpbbviet HIGH 9.3
CVE-2007-6088EPSS 7%

PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBBViet 02.03.07 and earlier allows remote attackers to execute arbit…

Fix: after 02.03.07
Fix from $1,950 2007-11-22
Mebiblio HIGH 9.3
CVE-2007-6089

PHP remote file inclusion vulnerability in index.php in meBiblio 0.4.5 allows remote attackers to execute arbitrary PHP code via a URL in the action …

No fix yet
Fix from $1,950 2007-11-22
Social Networking Script MEDIUM 6.8
CVE-2007-6057EPSS 6%

PHP remote file inclusion vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) allows remote attackers to execu…

No fix yet
Fix from $1,600 2007-11-20
Confixx Professional MEDIUM 6.8
CVE-2007-6042

PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary PHP code …

No fix yet
Fix from $1,600 2007-11-20
Juser MEDIUM 6.8
CVE-2007-6038EPSS 28%

PHP remote file inclusion vulnerability in xajax_functions.php in the JUser (com_juser) 1.0.14 component for Joomla! allows remote attackers to execu…

No fix yet
Fix from $1,600 2007-11-20
Clamav HIGH 7.5
CVE-2007-6029

Unspecified vulnerability in ClamAV 0.91.1 and 0.91.2 allows remote attackers to execute arbitrary code via a crafted e-mail message. NOTE: this info…

No fix yet
Fix from $1,950 2007-11-20
Carousel Flash Image Gallery MEDIUM 6.8
CVE-2007-6027

PHP remote file inclusion vulnerability in admin.jjgallery.php in the Carousel Flash Image Gallery (com_jjgallery) component for Joomla! allows remot…

No fix yet
Fix from $1,600 2007-11-20
Yappa Ng MEDIUM 6.8
CVE-2007-5994

PHP remote file inclusion vulnerability in check_noimage.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 allows re…

Mitigation only
Fix from $1,600 2007-11-15