Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Peopleaggregator MEDIUM 6.8
CVE-2007-5631EPSS 39%

Multiple PHP remote file inclusion vulnerabilities in PeopleAggregator 1.2pre6, when register_globals is enabled, allow remote attackers to execute a…

No fix yet
Fix from $1,600 2007-10-23
Socketmail MEDIUM 6.8
CVE-2007-5627

PHP remote file inclusion vulnerability in content/fnc-readmail3.php in SocketMail 2.2.8 allows remote attackers to execute arbitrary PHP code via a …

No fix yet
Fix from $1,600 2007-10-23
Towels MEDIUM 6.8
CVE-2007-5628EPSS 28%

PHP remote file inclusion vulnerability in src/scripture.php in The Online Web Library Site (TOWels) 0.1 allows remote attackers to execute arbitrary…

No fix yet
Fix from $1,600 2007-10-23
Awzmb MEDIUM 6.8
CVE-2007-5592EPSS 29%

Multiple PHP remote file inclusion vulnerabilities in awzMB 4.2 beta 1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in …

No fix yet
Fix from $1,600 2007-10-19
Drupal MEDIUM 6.8
CVE-2007-5593

install.php in Drupal 5.x before 5.3, when the configured database server is not reachable, allows remote attackers to execute arbitrary code via vec…

Fix: 5.3+
Fix from $1,600 2007-10-19
Awrate MEDIUM 6.8
CVE-2007-5599

Multiple PHP remote file inclusion vulnerabilities in awrate 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the toroot paramet…

Mitigation only
Fix from $1,600 2007-10-19
Artmedic Cms MEDIUM 6.8
CVE-2007-5600

Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC s…

Fix: after 3.4
Fix from $1,600 2007-10-19
Phpscms CRITICAL 9.8
CVE-2007-5565

PHP remote file inclusion vulnerability in includes/functions.php in phpSCMS 0.0.1-Alpha1 allows remote attackers to execute arbitrary PHP code via a…

Mitigation only
Fix from $2,300 2007-10-18
Phpblog HIGH 7.5
CVE-2007-5566

Multiple PHP remote file inclusion vulnerabilities in PHPBlog 0.1 Alpha allow remote attackers to execute arbitrary PHP code via a URL in the blog_lo…

Mitigation only
Fix from $1,950 2007-10-18
Galmeta Post HIGH 7.5
CVE-2007-5567

PHP remote file inclusion vulnerability in _lib/fckeditor/upload_config.php in Galmeta Post 0.11 allows remote attackers to execute arbitrary PHP cod…

Mitigation only
Fix from $1,950 2007-10-18
Limesurvey MEDIUM 6.8
CVE-2007-5573

PHP remote file inclusion vulnerability in classes/core/language.php in LimeSurvey 1.5.2 and earlier allows remote attackers to execute arbitrary PHP…

Fix: after 1.5.2
Fix from $1,600 2007-10-18
Phpdj MEDIUM 6.8
CVE-2007-5574EPSS 28%

PHP remote file inclusion vulnerability in djpage.php in PHPDJ 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the page parame…

No fix yet
Fix from $1,600 2007-10-18
Joomla MEDIUM 6.8
CVE-2007-5457EPSS 38%

Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component fo…

No fix yet
Fix from $1,600 2007-10-14
Joomla MEDIUM 6.8
CVE-2007-5451EPSS 31%

PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to e…

No fix yet
Fix from $1,600 2007-10-14
Php Stats HIGH 8.5
CVE-2007-5453

Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitrary code by writing PHP seque…

No fix yet
Fix from $1,950 2007-10-14
Brightstor Arcserve Backup HIGH 10.0
CVE-2007-5331EPSS 10%

Queue.dll for the message queuing service (LQserver.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows re…

Patch available
Fix from $1,950 2007-10-13
Tikiwiki Cms\/groupware HIGH 7.5
CVE-2007-5423EPSS 77%

tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f array parameter, which are proc…

No fix yet
Fix from $1,950 2007-10-12
Activekb MEDIUM 6.4
CVE-2007-5425

SQL injection vulnerability in admin/index.php in Interspire ActiveKB 1.5 allows remote attackers to execute arbitrary SQL commands via the questId p…

No fix yet
Fix from $1,600 2007-10-12
2g HIGH 7.5
CVE-2007-5418

Multiple PHP remote file inclusion vulnerabilities in CARE2X 2G 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the root_path p…

No fix yet
Fix from $1,950 2007-10-12
Jcontentsubscription MEDIUM 6.8
CVE-2007-5407EPSS 40%

Multiple PHP remote file inclusion vulnerabilities in the JContentSubscription (com_jcs) 1.5.8 component for Joomla! allow remote attackers to execut…

No fix yet
Fix from $1,600 2007-10-12
Nuseo Php Enterprise MEDIUM 6.8
CVE-2007-5409

PHP remote file inclusion vulnerability in admin/nuseo_admin_d.php in NuSEO PHP Enterprise 1.6 (NuSEO.PHP), when register_globals is enabled, allows …

No fix yet
Fix from $1,600 2007-10-12
Joomla MEDIUM 6.8
CVE-2007-5410EPSS 5%

PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joo…

No fix yet
Fix from $1,600 2007-10-12
Mp3 Allopass MEDIUM 6.8
CVE-2007-5412EPSS 38%

Multiple PHP remote file inclusion vulnerabilities in the Quoc-Huy MP3 Allopass (com_mp3_allopass) 1.0 component for Joomla! allow remote attackers t…

No fix yet
Fix from $1,600 2007-10-12
Pindorama MEDIUM 6.8
CVE-2007-5387EPSS 29%

PHP remote file inclusion vulnerability in active/components/xmlrpc/client.php in Pindorama 0.1 allows remote attackers to execute arbitrary PHP code…

No fix yet
Fix from $1,600 2007-10-12
Webdesktop MEDIUM 6.8
CVE-2007-5388EPSS 38%

Multiple PHP remote file inclusion vulnerabilities in WebDesktop 0.1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) app pa…

No fix yet
Fix from $1,600 2007-10-12
Joomla MEDIUM 6.8
CVE-2007-5389

PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execut…

Mitigation only
Fix from $1,600 2007-10-12
Picoflat Cms MEDIUM 6.8
CVE-2007-5390

PHP remote file inclusion vulnerability in index.php in PicoFlat CMS 0.4.14 and earlier allows remote attackers to execute arbitrary PHP code via a U…

Fix: after 0.4.14
Fix from $1,600 2007-10-12
Joomla MEDIUM 6.8
CVE-2007-5362EPSS 37%

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! al…

No fix yet
Fix from $1,600 2007-10-11
Joomla MEDIUM 6.8
CVE-2007-5363EPSS 31%

PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (com_panoramic) mambot (plugin) 1.0 for Joomla! allows…

No fix yet
Fix from $1,600 2007-10-11
Image Viewer HIGH 9.3
CVE-2007-2217EPSS 41%

Kodak Image Viewer in Microsoft Windows 2000 SP4, and in some cases XP SP2 and Server 2003 SP1 and SP2, allows remote attackers to execute arbitrary …

Patch available
Fix from $1,950 2007-10-09