Vulnerability index

Browse CVEs

45 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2011-3800 Serendipity 1.5.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in… Serendipity Mitigation only Fix from $1,6002011-09-24 MEDIUM 6.0 CVE-2009-4412 Unrestricted file upload vulnerability in Serendipity before 1.5 allows remote authenticated users to execute arbitrary code by uploading a file with… Serendipity after 1.5 Fix from $1,6002009-12-24 HIGH 7.5 CVE-2009-3337 SQL injection vulnerability in the Freetag (serendipity_event_freetag) plugin before 3.09 for Serendipity (S9Y) allows remote attackers to execute ar… Serendipity Event Freetag 3.09+ Fix from $1,9502009-09-24 MEDIUM 6.8 CVE-2006-6242 Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include arbitrary local files via a .… Serendipity No fix yet Fix from $1,6002006-12-03 HIGH 7.5 CVE-2006-2495 Cross-site request forgery (CSRF) vulnerability in the Entry Manager in Serendipity before 1.0-beta3 allows remote attackers to perform unauthorized … Serendipity Patch available Fix from $1,9502006-05-20 HIGH 7.5 CVE-2006-1910 config.php in S9Y Serendipity 1.0 beta 2 allows remote attackers to inject arbitrary PHP code by editing values that are stored in config.php and lat… Serendipity No fix yet Fix from $1,9502006-04-20 MEDIUM 5.1 CVE-2005-3129EPSS 5% Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged … Serendipity after 0.8.4 Fix from $1,6002005-10-04 HIGH 10.0 CVE-2005-1449 Unknown vulnerability in serendipity_config_local.inc.php for Serendipity before 0.8 has unknown impact. Serendipity Patch available Fix from $1,9502005-05-03 HIGH 10.0 CVE-2005-1452 Serendipity before 0.8 allows Chief users to "hide plugins installed by other users." Serendipity Patch available Fix from $1,9502005-05-03 HIGH 7.5 CVE-2005-1450 Unknown vulnerability in "the function used to validate path-names for uploading media" in Serendipity before 0.8 has unknown impact. Serendipity Patch available Fix from $1,9502005-05-03 HIGH 7.5 CVE-2005-1451 The media manager in Serendipity before 0.8 allows remote attackers to upload and execute arbitrary (1) .php or (2) .shtml files. Serendipity Patch available Fix from $1,9502005-05-03 MEDIUM 6.8 CVE-2005-1448 Cross-site scripting (XSS) vulnerability in the BBCode plugin for Serendipity before 0.8 allows remote attackers to inject arbitrary web script or HT… Serendipity Patch available Fix from $1,6002005-05-03 HIGH 7.5 CVE-2005-1134 SQL injection vulnerability in exit.php for Serendipity 0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) url_id … Serendipity Patch available Fix from $1,9502005-04-13 HIGH 7.5 CVE-2004-2158 SQL injection vulnerability in Serendipity 0.7-beta1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter to (1) exit… Serendipity Patch available Fix from $1,9502004-12-31 MEDIUM 5.0 CVE-2004-1620EPSS 8% CRLF injection vulnerability in Serendipity before 0.7rc1 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML … Serendipity Patch available Fix from $1,6002004-10-21