Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2007-2252 Directory traversal vulnerability in iconspopup.php in Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain sensitive information … Exponent Cms No fix yet Fix from $1,6002007-04-25 MEDIUM 5.0 CVE-2007-2253 Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain path information via a direct request for (1) sdk/blanks/formcontrol.php and … Exponent Cms after 0.96.6_alpha Fix from $1,6002007-04-25 MEDIUM 6.4 CVE-2006-4963EPSS 7% Directory traversal vulnerability in index.php in Exponent CMS 0.96.3 allows remote attackers to read and execute arbitrary local files via a .. (dot… Exponent Cms No fix yet Fix from $1,6002006-09-23 HIGH 10.0 CVE-2006-1604 Unspecified vulnerability in Exponent CMS before 0.96.5 RC 1 has unknown impact and remote attack vectors related to variables that are not "typecast… Exponent Cms Patch available Fix from $1,9502006-04-04 HIGH 7.5 CVE-2006-1605 Unspecified vulnerability in the image module in Exponent CMS before 0.96.5 RC 1 allows remote attackers to execute arbitrary code via unknown vector… Exponent Cms Patch available Fix from $1,9502006-04-04 HIGH 7.5 CVE-2006-1607 Unspecified vulnerability in the banner module in Exponent CMS before 0.96.5 RC 1 allows "php injection" via unknown attack vectors. Exponent Cms Patch available Fix from $1,9502006-04-04 MEDIUM 5.0 CVE-2006-1606 Unspecified vulnerability in the image module in Exponent CMS before 0.96.5 RC 1 allows "directory disclosure" with unknown attack vectors. Exponent Cms Patch available Fix from $1,6002006-04-04 HIGH 10.0 CVE-2005-3764 The image gallery (imagegallery) component in Exponent CMS 0.96.3 and later versions does not properly check the MIME type of uploaded files, with un… Exponent Mitigation only Fix from $1,9502005-11-22 HIGH 7.5 CVE-2005-3762 SQL injection vulnerability in the navigation module (navigationmodule) in Exponent CMS 0.96.3 and later versions allows remote attackers to execute … Exponent No fix yet Fix from $1,9502005-11-22 HIGH 7.5 CVE-2005-3765 Exponent CMS 0.96.3 and later versions performs a chmod on uploaded files to give them execute permissions, which allows remote attackers to execute … Exponent Mitigation only Fix from $1,9502005-11-22 MEDIUM 5.0 CVE-2005-3763 Exponent CMS 0.96.3 and later versions includes the full installation path in the base parameter to thumb.php, which allows remote attackers to obtai… Exponent Mitigation only Fix from $1,6002005-11-22 MEDIUM 5.0 CVE-2005-3766 Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain p… Exponent Mitigation only Fix from $1,6002005-11-22 MEDIUM 5.0 CVE-2005-3767 Exponent CMS 0.96.3 and later versions does not properly restrict the types of uploaded files, which allows remote attackers to upload and execute PH… Exponent Mitigation only Fix from $1,6002005-11-22 MEDIUM 5.0 CVE-2005-0310 Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3)… Exponent Mitigation only Fix from $1,6002005-05-02