Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Torrentflux MEDIUM 6.8
CVE-2008-6585

Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the authentication of administ…

No fix yet
Fix from $1,600 2009-04-03
Torrentflux MEDIUM 6.0
CVE-2008-6584

html/index.php in TorrentFlux 2.3 allows remote authenticated users to execute arbitrary code via a URL with a file containing an executable extensio…

No fix yet
Fix from $1,600 2009-04-03
Torrentflux MEDIUM 6.5
CVE-2006-6598

Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 allows remote authenticat…

Fix: after 2.2
Fix from $1,600 2006-12-15
Torrentflux MEDIUM 6.5
CVE-2006-6604

Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot…

No fix yet
Fix from $1,600 2006-12-15
Torrentflux MEDIUM 6.0
CVE-2006-6599

maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters (";" semicolon) in the an…

No fix yet
Fix from $1,600 2006-12-15
Torrentflux MEDIUM 6.0
CVE-2006-6600

Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web script or HTML via doubl…

Fix: after 2.2
Fix from $1,600 2006-12-15
Torrentflux MEDIUM 6.0
CVE-2006-6330

index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in the kill parameter.

Patch available
Fix from $1,600 2006-12-06
Torrentflux MEDIUM 6.0
CVE-2006-6331

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metachar…

Mitigation only
Fix from $1,600 2006-12-06
Torrentflux MEDIUM 5.0
CVE-2006-5609

Directory traversal vulnerability in dir.php in TorrentFlux 2.1 allows remote attackers to list arbitrary directories via "\.\./" sequences in the di…

Mitigation only
Fix from $1,600 2006-10-30
Torrentflux MEDIUM 6.8
CVE-2006-5227

Cross-site scripting (XSS) vulnerability in admin.php in TorrentFlux 2.1 allows remote attackers to inject arbitrary web script or HTML via (1) the $…

No fix yet
Fix from $1,600 2006-10-10