Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
MEDIUM 5.8 CVE-2009-1064 Argument injection vulnerability in orbitmxt.dll 2.1.0.2 in the Orbit Downloader 2.8.7 and earlier ActiveX control allows remote attackers to overwri… Orbit Downloader after 2.8.7 Fix from $1,6002009-03-26 MEDIUM 6.4 CVE-2009-1102 Unspecified vulnerability in the Virtual Machine in Java SE Development Kit (JDK) and Java Runtime Environment (JRE) 6 Update 12 and earlier allows r… Java Patch available Fix from $1,6002009-03-25 MEDIUM 6.5 CVE-2008-6518 Unrestricted file upload vulnerability in the profile feature in VidiScript allows registered remote authenticated users to execute arbitrary code by… Vidiscript No fix yet Fix from $1,6002009-03-25 HIGH 9.0 CVE-2009-1088EPSS 12% Hannon Hill Cascade Server 5.7 and other versions allows remote authenticated users to execute arbitrary programs or Java code via a crafted XSLT sty… Cascade No fix yet Fix from $1,9502009-03-25 HIGH 9.0 CVE-2009-1083 Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in the passwords of user accoun… Java System Identity Manager Patch available Fix from $1,9502009-03-25 MEDIUM 6.8 CVE-2008-6513 Unrestricted file upload vulnerability in saa.php in Andy's PHP Knowledgebase (aphpkb) 0.92.9 allows remote attackers to execute arbitrary code by up… Aphpkb Patch available Fix from $1,6002009-03-24 MEDIUM 5.5 CVE-2008-6499 security/xamppsecurity.php in XAMPP 1.6.8 performs an extract operation on the SERVER superglobal array, which allows remote attackers to spoof criti… Xampp No fix yet Fix from $1,6002009-03-20 HIGH 7.5 CVE-2009-1025EPSS 40% PHP remote file inclusion vulnerability in linkadmin.php in Beerwin PHPLinkAdmin 1.0 allows remote attackers to execute arbitrary PHP code via a URL … Phplinkadmin No fix yet Fix from $1,9502009-03-20 HIGH 7.5 CVE-2008-6491 PHP remote file inclusion vulnerability in connexion.php in PHPGKit 0.9 allows remote attackers to execute arbitrary PHP code via a URL in the DOCUME… Phpgkit No fix yet Fix from $1,9502009-03-19 HIGH 7.5 CVE-2009-0966 PHP remote file inclusion vulnerability in cross.php in YABSoft Mega File Hosting 1.2 allows remote attackers to execute arbitrary PHP code via a URL… Mega File Hosting Script No fix yet Fix from $1,9502009-03-19 MEDIUM 6.8 CVE-2009-0970 PHP remote file inclusion vulnerability in includes/class_image.php in PHP Pro Bid 6.05, when register_globals is enabled, allows remote attackers to… Php Pro Bid Mitigation only Fix from $1,6002009-03-19 MEDIUM 6.8 CVE-2008-6482EPSS 22% PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is … Com Treeg No fix yet Fix from $1,6002009-03-18 HIGH 7.5 CVE-2008-6483EPSS 26% PHP remote file inclusion vulnerability in admin.googlebase.php in the Ecom Solutions VirtueMart Google Base (aka com_googlebase or Froogle) componen… Com Googlebase No fix yet Fix from $1,9502009-03-18 MEDIUM 6.8 CVE-2008-6486 PHP remote file inclusion vulnerability in slideshow_uploadvideo.content.php in SharedLog, when register_globals is enabled, allows remote attackers … Sharedlog Mitigation only Fix from $1,6002009-03-18 HIGH 9.0 CVE-2008-6474 The management interface in F5 BIG-IP 9.4.3 allows remote authenticated users with Resource Manager privileges to inject arbitrary Perl code via unsp… Tmos Mitigation only Fix from $1,9502009-03-16 HIGH 9.3 CVE-2009-0191EPSS 5% Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 3.0.2009.1301, does not properly handle a JBIG2 symbol dictionary segment wit… Foxit Reader Patch available Fix from $1,9502009-03-10 HIGH 7.5 CVE-2008-6446 Static code injection vulnerability in the Guestbook component in CMS MAXSITE allows remote attackers to inject arbitrary PHP code into the guestbook… Maxsite No fix yet Fix from $1,9502009-03-09 HIGH 7.5 CVE-2008-6421 PHP remote file inclusion vulnerability in social_game_play.php in Social Site Generator (SSG) 2.0 allows remote attackers to execute arbitrary PHP c… Social Site Generator No fix yet Fix from $1,9502009-03-06 HIGH 7.5 CVE-2008-6403 PHP remote file inclusion vulnerability in themes/default/include/html/insert.inc.php in OpenRat 0.8-beta4 and earlier allows remote attackers to exe… Openrat after 0.8-beta4 Fix from $1,9502009-03-06 HIGH 7.5 CVE-2008-6408 PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in… Ol\'bookmarks No fix yet Fix from $1,9502009-03-06 HIGH 7.5 CVE-2008-6402 PHP remote file inclusion vulnerability in hu/modules/reg-new/modstart.php in Sofi WebGui 0.6.3 PRE and earlier allows remote attackers to execute ar… Sofi Webgui after 0.6.3pre Fix from $1,9502009-03-06 HIGH 7.5 CVE-2009-0820 Multiple eval injection vulnerabilities in phpScheduleIt before 1.2.11 allow remote attackers to execute arbitrary code via (1) the end_date paramete… Phpscheduleit after 1.2.10 Fix from $1,9502009-03-05 HIGH 9.3 CVE-2009-0811EPSS 6% Insecure method vulnerability in the SopCast SopCore ActiveX control in sopocx.ocx 3.0.3.501 allows remote attackers to execute arbitrary programs vi… Sopcore Activex Control No fix yet Fix from $1,9502009-03-04 MEDIUM 6.5 CVE-2009-0759 Multiple CRLF injection vulnerabilities in webadmin in ZNC before 0.066 allow remote authenticated users to modify the znc.conf configuration file an… Znc after 0.062 Fix from $1,6002009-03-03 MEDIUM 5.0 CVE-2008-6373 Unspecified vulnerability in Nagios before 3.0.6 has unspecified impact and remote attack vectors related to CGI programs, "adaptive external command… Nagios after 3.0.5 Fix from $1,6002009-03-02 HIGH 7.5 CVE-2008-6377 PHP remote file inclusion vulnerability in include/global.php in Multi SEO phpBB 1.1.0 allows remote attackers to execute arbitrary PHP code via a UR… Multi Seo Phpbb No fix yet Fix from $1,9502009-03-02 HIGH 7.5 CVE-2008-6347EPSS 20% PHP remote file inclusion vulnerability in lib/onguma.class.php in the Onguma Time Sheet (com_ongumatimesheet20) 2.0 4b component for Joomla! allows … Onguma Time Sheet No fix yet Fix from $1,9502009-03-02 HIGH 7.5 CVE-2008-6315 PHP remote file inclusion vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to execute arbitrary PHP … Phpmygallery No fix yet Fix from $1,9502009-02-27 HIGH 7.5 CVE-2008-6318 PHP remote file inclusion vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attackers to execute arbitrary … Phpmygallery No fix yet Fix from $1,9502009-02-27 MEDIUM 6.8 CVE-2008-6305 PHP remote file inclusion vulnerability in init.php in Free Directory Script 1.1.1, when register_globals is enabled, allows remote attackers to exec… Free Directory Script No fix yet Fix from $1,6002009-02-26