Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
Phprojekt HIGH 7.5
CVE-2006-4204EPSS 8%

Multiple PHP remote file inclusion vulnerabilities in PHProjekt 5.1 and possibly earlier allow remote attackers to execute arbitrary PHP code via a U…

Fix: after 5.1
Fix from $1,950 2006-08-17
Zen Cart MEDIUM 5.1
CVE-2006-4215

PHP remote file inclusion vulnerability in index.php in Zen Cart 1.3.0.2 and earlier, when register_globals is enabled, allows remote attackers to ex…

Fix: after 1.3.0.2
Fix from $1,600 2006-08-17
Chaussette HIGH 7.5
CVE-2006-4159EPSS 15%

Multiple PHP remote file inclusion vulnerabilities in Chaussette 080706 and earlier allow remote attackers to execute arbitrary PHP code via a URL in…

Fix: after 080706
Fix from $1,950 2006-08-16
Remository For Mambo MEDIUM 6.8
CVE-2006-4130

PHP remote file inclusion vulnerability in admin.remository.php in the Remository Component (com_remository) 3.25 and earlier for Mambo and Joomla!, …

Fix: after 3.25
Fix from $1,600 2006-08-14
Rails HIGH 7.5
CVE-2006-4111

Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP head…

Fix: after 1.1.4
Fix from $1,950 2006-08-14
Jd Wiki MEDIUM 6.8
CVE-2006-4074EPSS 6%

PHP remote file inclusion vulnerability in lib/tpl/default/main.php in the JD-Wiki Component (com_jd-wiki) 1.0.2 and earlier for Joomla!, when regist…

Fix: after 1.0.2
Fix from $1,600 2006-08-11
Sapid Cms HIGH 7.5
CVE-2006-4026

PHP remote file inclusion vulnerability in SAPID CMS 123 rc3 allows remote attackers to execute arbitrary PHP code via a URL in the (1) root_path par…

No fix yet
Fix from $1,950 2006-08-09
Mambo Gallery Manager MEDIUM 6.8
CVE-2006-3980EPSS 6%

PHP remote file inclusion vulnerability in administrator/components/com_mgm/help.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo …

Fix: after 0.95r2
Fix from $1,600 2006-08-05
User Home Pages MEDIUM 6.8
CVE-2006-3995EPSS 11%

Multiple PHP remote file inclusion vulnerabilities in (1) uhp_config.php, and possibly (2) footer.php, (3) functions.php, (4) install.uhp.php, (5) to…

Patch available
Fix from $1,600 2006-08-05
Mynewsgroups HIGH 7.5
CVE-2006-3966

PHP remote file inclusion vulnerability in /lib/tree/layersmenu.inc.php in the PHP Layers Menu 2.3.5 package for MyNewsGroups :) 0.6b and earlier all…

Fix: after 0.6b
Fix from $1,950 2006-08-01
Mambatstaff MEDIUM 6.8
CVE-2006-3947

PHP remote file inclusion vulnerability in components/com_mambatstaff/mambatstaff.php in the Mambatstaff 3.1b and earlier component for Mambo allows …

Fix: after 3.1b
Fix from $1,600 2006-08-01
Artlinks Component MEDIUM 6.8
CVE-2006-3949

PHP remote file inclusion vulnerability in artlinks.dispnew.php in the Artlinks component (com_artlinks) for Mambo allows remote attackers to execute…

No fix yet
Fix from $1,600 2006-08-01
Mambo Multibanners MEDIUM 6.8
CVE-2006-3846

PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote attackers to execute arbitrary P…

No fix yet
Fix from $1,600 2006-07-25
Mospray MEDIUM 5.1
CVE-2006-3847

PHP remote file inclusion vulnerability in (1) admin.php, and possibly (2) details.php, (3) modify.php, (4) newgroup.php, (5) newtask.php, and (6) rs…

No fix yet
Fix from $1,600 2006-07-25
Smf Forum MEDIUM 6.8
CVE-2006-3773EPSS 6%

PHP remote file inclusion vulnerability in smf.php in the SMF-Forum 1.3.1.3 Bridge Component (com_smf) For Joomla! and Mambo 4.5.3+ allows remote att…

No fix yet
Fix from $1,600 2006-07-24
Performs Component MEDIUM 6.8
CVE-2006-3774EPSS 6%

PHP remote file inclusion vulnerability in performs.php in the perForms component (com_performs) 1.0 and earlier for Joomla! allows remote attackers …

Fix: after 1.0
Fix from $1,600 2006-07-24
Autohost HIGH 7.5
CVE-2006-3776

PHP remote file inclusion vulnerability in order/index.php in IDevSpot (1) PhpHostBot 1.0 and (2) AutoHost 3.0 allows remote attackers to execute arb…

No fix yet
Fix from $1,950 2006-07-24
Phplinkexchange HIGH 7.5
CVE-2006-3777

PHP remote file inclusion vulnerability in index.php in IDevSpot PhpLinkExchange 1.0 allows remote attackers to execute arbitrary PHP code via a URL …

Mitigation only
Fix from $1,950 2006-07-24
Ie HIGH 8.8
CVE-2006-3730EPSS 64%

Integer overflow in Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) and execute arbitrar…

No fix yet
Fix from $1,950 2006-07-21
Loudmouth MEDIUM 6.8
CVE-2006-3748

PHP remote file inclusion vulnerability in includes/abbc/abbc.class.php in the LoudMouth Component for Mambo 4.0j, and possibly other versions includ…

No fix yet
Fix from $1,600 2006-07-21
Sitemap MEDIUM 6.8
CVE-2006-3749

PHP remote file inclusion vulnerability in sitemap.xml.php in Sitemap component (com_sitemap) 2.0.0 for Mambo 4.5.1 CMS, when register_globals is ena…

No fix yet
Fix from $1,600 2006-07-21
Hashcash MEDIUM 6.8
CVE-2006-3750EPSS 6%

PHP remote file inclusion vulnerability in server.php in the Hashcash Component (com_hashcash) 1.2.1 for Joomla! allows remote attackers to execute a…

No fix yet
Fix from $1,600 2006-07-21
Htmlarea3 MEDIUM 6.8
CVE-2006-3751EPSS 6%

PHP remote file inclusion vulnerability in popups/ImageManager/config.inc.php in the HTMLArea3 Addon Component (com_htmlarea3_xtd-c) for ImageManager…

No fix yet
Fix from $1,600 2006-07-21
Excel HIGH 9.3
CVE-2006-1301EPSS 10%

Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted SELECTION record that trigg…

Mitigation only
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-1308EPSS 9%

Unspecified vulnerability in Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafte…

Patch available
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-1309EPSS 10%

Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted LABEL record that triggers …

Mitigation only
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-1304EPSS 11%

Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted COLINFO …

Patch available
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-1306EPSS 9%

Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted BIFF record with an attacke…

Patch available
Fix from $1,950 2006-07-13
Excel HIGH 9.3
CVE-2006-2388EPSS 11%

Microsoft Office Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via malformed cell comments, which lead to modifica…

Patch available
Fix from $1,950 2006-07-13
Plume Cms HIGH 7.5
CVE-2006-3562

PHP remote file inclusion vulnerabilities in plume cms 1.0.4 allow remote attackers to execute arbitrary PHP code via a URL in the _PX_config[manager…

No fix yet
Fix from $1,950 2006-07-13