Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.0
CVE-2011-3800
Serendipity 1.5.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in…
Serendipity
Mitigation only
MEDIUM 6.0
CVE-2009-4412
Unrestricted file upload vulnerability in Serendipity before 1.5 allows remote authenticated users to execute arbitrary code by uploading a file with…
Serendipity
after 1.5
HIGH 7.5
CVE-2009-3337
SQL injection vulnerability in the Freetag (serendipity_event_freetag) plugin before 3.09 for Serendipity (S9Y) allows remote attackers to execute ar…
Serendipity Event Freetag
3.09+
MEDIUM 6.8
CVE-2006-6242
Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include arbitrary local files via a .…
Serendipity
No fix yet
HIGH 7.5
CVE-2006-2495
Cross-site request forgery (CSRF) vulnerability in the Entry Manager in Serendipity before 1.0-beta3 allows remote attackers to perform unauthorized …
Serendipity
Patch available
HIGH 7.5
CVE-2006-1910
config.php in S9Y Serendipity 1.0 beta 2 allows remote attackers to inject arbitrary PHP code by editing values that are stored in config.php and lat…
Serendipity
No fix yet
MEDIUM 5.1
CVE-2005-3129EPSS 5%
Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged …
Serendipity
after 0.8.4
HIGH 10.0
CVE-2005-1449
Unknown vulnerability in serendipity_config_local.inc.php for Serendipity before 0.8 has unknown impact.
Serendipity
Patch available
HIGH 10.0
CVE-2005-1452
Serendipity before 0.8 allows Chief users to "hide plugins installed by other users."
Serendipity
Patch available
HIGH 7.5
CVE-2005-1450
Unknown vulnerability in "the function used to validate path-names for uploading media" in Serendipity before 0.8 has unknown impact.
Serendipity
Patch available
HIGH 7.5
CVE-2005-1451
The media manager in Serendipity before 0.8 allows remote attackers to upload and execute arbitrary (1) .php or (2) .shtml files.
Serendipity
Patch available
MEDIUM 6.8
CVE-2005-1448
Cross-site scripting (XSS) vulnerability in the BBCode plugin for Serendipity before 0.8 allows remote attackers to inject arbitrary web script or HT…
Serendipity
Patch available
HIGH 7.5
CVE-2005-1134
SQL injection vulnerability in exit.php for Serendipity 0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) url_id …
Serendipity
Patch available
HIGH 7.5
CVE-2004-2158
SQL injection vulnerability in Serendipity 0.7-beta1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter to (1) exit…
Serendipity
Patch available
MEDIUM 5.0
CVE-2004-1620EPSS 8%
CRLF injection vulnerability in Serendipity before 0.7rc1 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML …
Serendipity
Patch available