Vulnerability index

Browse CVEs

6,062 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Code InjectionCWE-94 × clear
MEDIUM 6.8 CVE-2006-6957 PHP remote file inclusion vulnerability in addons/mod_media/body.php in Docebo 3.0.3 and earlier, when register_globals is enabled, allows remote att… Docebo after 3.0.3 Fix from $1,6002007-01-29 HIGH 7.5 CVE-2006-6958EPSS 9% Multiple PHP remote file inclusion vulnerabilities in phpBlueDragon 2.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the vsDra… Phpbluedragon Cms No fix yet Fix from $1,9502007-01-29 MEDIUM 6.8 CVE-2006-6962 PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to e… Rs Gallery2 No fix yet Fix from $1,6002007-01-29 MEDIUM 6.8 CVE-2007-0499 PHP remote file inclusion vulnerability in config.php in Sangwan Kim phpIndexPage 1.0.1 and earlier allows remote attackers to execute arbitrary PHP … Phpindexpage after 1.0.1 Fix from $1,6002007-01-25 MEDIUM 6.8 CVE-2007-0501 PHP remote file inclusion vulnerability in index.php in Mafia Scum Tools 2.0.0 in Matthew Wardrop Advanced Random Generators (adv-random-gen) allows … Mafia Scum Tools after 2.0.0 Fix from $1,6002007-01-25 HIGH 7.5 CVE-2007-0486 Multiple PHP remote file inclusion vulnerabilities in Openads (aka phpAdsNew) 2.0.7 allow remote attackers to execute arbitrary PHP code via a URL in… Phpadsnew Mitigation only Fix from $1,9502007-01-25 HIGH 7.5 CVE-2007-0230 PHP remote file inclusion vulnerability in install.php in CS-Cart 1.3.3 allows remote attackers to execute arbitrary PHP code via a URL in the instal… Cs Cart Mitigation only Fix from $1,9502007-01-13 HIGH 7.5 CVE-2007-0134EPSS 11% Multiple eval injection vulnerabilities in iGeneric iG Shop 1.0 allow remote attackers to execute arbitrary code via the action parameter, which is s… Ig Shop No fix yet Fix from $1,9502007-01-09 HIGH 9.3 CVE-2007-0127 The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remot… Opera Browser after 9.02 Fix from $1,9502007-01-09 HIGH 9.3 CVE-2006-4695EPSS 40% Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary c… Office Web Components Patch available Fix from $1,9502006-12-31 MEDIUM 6.8 CVE-2006-6887 Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors r… Logahead Unu Mitigation only Fix from $1,6002006-12-31 HIGH 7.5 CVE-2006-6760 Multiple PHP remote file inclusion vulnerabilities in template.php in Phpmymanga 0.8.1 and earlier allow remote attackers to execute arbitrary PHP co… Phpmymanga after 0.8.1 Fix from $1,9502006-12-27 HIGH 7.5 CVE-2006-6748 PHP remote file inclusion vulnerability in i-accueil.php in Newxooper 0.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL… Newxooper after 0.9 Fix from $1,9502006-12-27 MEDIUM 6.8 CVE-2006-6732 PHP remote file inclusion vulnerability in archive.php in cwmVote 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the abs para… Cwmvote No fix yet Fix from $1,6002006-12-26 MEDIUM 6.8 CVE-2006-6738 PHP remote file inclusion vulnerability in statistic.php in cwmCounter 5.1.1 and earlier allows remote attackers to execute arbitrary PHP code via a … Cwmcounter after 5.1.1 Fix from $1,6002006-12-26 HIGH 7.5 CVE-2006-6739 PHP remote file inclusion vulnerability in buycd.php in Paristemi 0.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the HTTP_D… Paristemi Patch available Fix from $1,9502006-12-26 HIGH 7.5 CVE-2006-6740EPSS 9% Multiple PHP remote file inclusion vulnerabilities in phpProfiles 3.1.2b and earlier allow remote attackers to execute arbitrary PHP code via a URL i… Phpprofiles after 3.1.2b Fix from $1,9502006-12-26 HIGH 7.5 CVE-2006-6726 PHP remote file inclusion vulnerability in inertianews_main.php in inertianews 0.02 beta allows remote attackers to execute arbitrary PHP code via a … Inertianews No fix yet Fix from $1,9502006-12-26 HIGH 7.5 CVE-2006-6727 PHP remote file inclusion vulnerability in inertianews_class.php in inertianews 0.02 beta and earlier allows remote attackers to execute arbitrary PH… Inertianews after 0.02 Fix from $1,9502006-12-26 HIGH 7.5 CVE-2006-6720 PHP remote file inclusion vulnerability in admin/index_sitios.php in Azucar CMS 1.3 allows remote attackers to execute arbitrary PHP code via a URL i… Azucar Cms No fix yet Fix from $1,9502006-12-23 HIGH 7.5 CVE-2006-6710 Multiple PHP remote file inclusion vulnerabilities in PgmReloaded 0.8.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in… Pgmreloaded after 0.8.5 Fix from $1,9502006-12-23 HIGH 7.5 CVE-2006-6689 Multiple PHP remote file inclusion vulnerabilities in Paristemi 0.8.3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in t… Paristemi after 0.8.3 Fix from $1,9502006-12-21 HIGH 9.3 CVE-2006-6504EPSS 9% Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to execute arbitrary code by appending a… Firefox 1.0.7 / 1.5.0.9+ Fix from $1,9502006-12-20 HIGH 7.5 CVE-2006-6462 PHP remote file inclusion vulnerability in engine/oldnews.inc.php in CM68 News 12.02.06 allows remote attackers to execute arbitrary PHP code via a U… Cm68 News No fix yet Fix from $1,9502006-12-11 HIGH 7.5 CVE-2006-6212 PHP remote file inclusion vulnerability in centre.php in Site News (site_news) 2.00, and possibly earlier, allows remote attackers to execute arbitra… Site News No fix yet Fix from $1,9502006-12-01 MEDIUM 5.1 CVE-2006-6086 PHP remote file inclusion vulnerability in src/ark_inc.php in e-Ark 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_pe… E Ark No fix yet Fix from $1,6002006-11-24 HIGH 7.5 CVE-2006-6041 Multiple PHP remote file inclusion vulnerabilities in Laurent Van den Reysen WORK system e-commerce 3.0.2, and other versions before 3.0.4, allow rem… Work System E Commerce after 3.0.2 Fix from $1,9502006-11-22 HIGH 7.5 CVE-2006-5865 PHP remote file inclusion vulnerability in language.inc.php in MyAlbum 3.02 and earlier allows remote attackers to execute arbitrary PHP code via a U… Myalbum after 3.02 Fix from $1,9502006-11-11 HIGH 7.5 CVE-2006-5788 PHP remote file inclusion vulnerability in (1) index.php and (2) admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to execute … Iprimal Forums No fix yet Fix from $1,9502006-11-07 MEDIUM 5.1 CVE-2006-5762 PHP remote file inclusion vulnerability in forgot_pass.php in Free File Hosting 1.1 and earlier allows remote attackers to execute arbitrary PHP code… Free File Hosting after 1.1 Fix from $1,6002006-11-06