Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Docebo MEDIUM 6.8
CVE-2006-6957

PHP remote file inclusion vulnerability in addons/mod_media/body.php in Docebo 3.0.3 and earlier, when register_globals is enabled, allows remote att…

Fix: after 3.0.3
Fix from $1,600 2007-01-29
Phpbluedragon Cms HIGH 7.5
CVE-2006-6958EPSS 9%

Multiple PHP remote file inclusion vulnerabilities in phpBlueDragon 2.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the vsDra…

No fix yet
Fix from $1,950 2007-01-29
Rs Gallery2 MEDIUM 6.8
CVE-2006-6962

PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to e…

No fix yet
Fix from $1,600 2007-01-29
Phpindexpage MEDIUM 6.8
CVE-2007-0499

PHP remote file inclusion vulnerability in config.php in Sangwan Kim phpIndexPage 1.0.1 and earlier allows remote attackers to execute arbitrary PHP …

Fix: after 1.0.1
Fix from $1,600 2007-01-25
Mafia Scum Tools MEDIUM 6.8
CVE-2007-0501

PHP remote file inclusion vulnerability in index.php in Mafia Scum Tools 2.0.0 in Matthew Wardrop Advanced Random Generators (adv-random-gen) allows …

Fix: after 2.0.0
Fix from $1,600 2007-01-25
Phpadsnew HIGH 7.5
CVE-2007-0486

Multiple PHP remote file inclusion vulnerabilities in Openads (aka phpAdsNew) 2.0.7 allow remote attackers to execute arbitrary PHP code via a URL in…

Mitigation only
Fix from $1,950 2007-01-25
Cs Cart HIGH 7.5
CVE-2007-0230

PHP remote file inclusion vulnerability in install.php in CS-Cart 1.3.3 allows remote attackers to execute arbitrary PHP code via a URL in the instal…

Mitigation only
Fix from $1,950 2007-01-13
Ig Shop HIGH 7.5
CVE-2007-0134EPSS 11%

Multiple eval injection vulnerabilities in iGeneric iG Shop 1.0 allow remote attackers to execute arbitrary code via the action parameter, which is s…

No fix yet
Fix from $1,950 2007-01-09
Opera Browser HIGH 9.3
CVE-2007-0127

The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remot…

Fix: after 9.02
Fix from $1,950 2007-01-09
Office Web Components HIGH 9.3
CVE-2006-4695EPSS 40%

Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary c…

Patch available
Fix from $1,950 2006-12-31
Logahead Unu MEDIUM 6.8
CVE-2006-6887

Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors r…

Mitigation only
Fix from $1,600 2006-12-31
Phpmymanga HIGH 7.5
CVE-2006-6760

Multiple PHP remote file inclusion vulnerabilities in template.php in Phpmymanga 0.8.1 and earlier allow remote attackers to execute arbitrary PHP co…

Fix: after 0.8.1
Fix from $1,950 2006-12-27
Newxooper HIGH 7.5
CVE-2006-6748

PHP remote file inclusion vulnerability in i-accueil.php in Newxooper 0.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL…

Fix: after 0.9
Fix from $1,950 2006-12-27
Cwmvote MEDIUM 6.8
CVE-2006-6732

PHP remote file inclusion vulnerability in archive.php in cwmVote 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the abs para…

No fix yet
Fix from $1,600 2006-12-26
Cwmcounter MEDIUM 6.8
CVE-2006-6738

PHP remote file inclusion vulnerability in statistic.php in cwmCounter 5.1.1 and earlier allows remote attackers to execute arbitrary PHP code via a …

Fix: after 5.1.1
Fix from $1,600 2006-12-26
Paristemi HIGH 7.5
CVE-2006-6739

PHP remote file inclusion vulnerability in buycd.php in Paristemi 0.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the HTTP_D…

Patch available
Fix from $1,950 2006-12-26
Phpprofiles HIGH 7.5
CVE-2006-6740EPSS 9%

Multiple PHP remote file inclusion vulnerabilities in phpProfiles 3.1.2b and earlier allow remote attackers to execute arbitrary PHP code via a URL i…

Fix: after 3.1.2b
Fix from $1,950 2006-12-26
Inertianews HIGH 7.5
CVE-2006-6726

PHP remote file inclusion vulnerability in inertianews_main.php in inertianews 0.02 beta allows remote attackers to execute arbitrary PHP code via a …

No fix yet
Fix from $1,950 2006-12-26
Inertianews HIGH 7.5
CVE-2006-6727

PHP remote file inclusion vulnerability in inertianews_class.php in inertianews 0.02 beta and earlier allows remote attackers to execute arbitrary PH…

Fix: after 0.02
Fix from $1,950 2006-12-26
Azucar Cms HIGH 7.5
CVE-2006-6720

PHP remote file inclusion vulnerability in admin/index_sitios.php in Azucar CMS 1.3 allows remote attackers to execute arbitrary PHP code via a URL i…

No fix yet
Fix from $1,950 2006-12-23
Pgmreloaded HIGH 7.5
CVE-2006-6710

Multiple PHP remote file inclusion vulnerabilities in PgmReloaded 0.8.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in…

Fix: after 0.8.5
Fix from $1,950 2006-12-23
Paristemi HIGH 7.5
CVE-2006-6689

Multiple PHP remote file inclusion vulnerabilities in Paristemi 0.8.3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in t…

Fix: after 0.8.3
Fix from $1,950 2006-12-21
Firefox HIGH 9.3
CVE-2006-6504EPSS 9%

Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to execute arbitrary code by appending a…

Fix: 1.0.7 / 1.5.0.9+
Fix from $1,950 2006-12-20
Cm68 News HIGH 7.5
CVE-2006-6462

PHP remote file inclusion vulnerability in engine/oldnews.inc.php in CM68 News 12.02.06 allows remote attackers to execute arbitrary PHP code via a U…

No fix yet
Fix from $1,950 2006-12-11
Site News HIGH 7.5
CVE-2006-6212

PHP remote file inclusion vulnerability in centre.php in Site News (site_news) 2.00, and possibly earlier, allows remote attackers to execute arbitra…

No fix yet
Fix from $1,950 2006-12-01
E Ark MEDIUM 5.1
CVE-2006-6086

PHP remote file inclusion vulnerability in src/ark_inc.php in e-Ark 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_pe…

No fix yet
Fix from $1,600 2006-11-24
Work System E Commerce HIGH 7.5
CVE-2006-6041

Multiple PHP remote file inclusion vulnerabilities in Laurent Van den Reysen WORK system e-commerce 3.0.2, and other versions before 3.0.4, allow rem…

Fix: after 3.0.2
Fix from $1,950 2006-11-22
Myalbum HIGH 7.5
CVE-2006-5865

PHP remote file inclusion vulnerability in language.inc.php in MyAlbum 3.02 and earlier allows remote attackers to execute arbitrary PHP code via a U…

Fix: after 3.02
Fix from $1,950 2006-11-11
Iprimal Forums HIGH 7.5
CVE-2006-5788

PHP remote file inclusion vulnerability in (1) index.php and (2) admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to execute …

No fix yet
Fix from $1,950 2006-11-07
Free File Hosting MEDIUM 5.1
CVE-2006-5762

PHP remote file inclusion vulnerability in forgot_pass.php in Free File Hosting 1.1 and earlier allows remote attackers to execute arbitrary PHP code…

Fix: after 1.1
Fix from $1,600 2006-11-06