Skip to main content

CWE archive

CWE-94 CVEs

Programmatic archive

6,681 CVEs tagged with CWE-941,966 Critical, 2,231 High, 1,606 Medium, 877 Low, 1 Unrated.

CVE-2007-3130

Published Jun 8, 2007

Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! allow remote attackers to ex…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2899

Published May 30, 2007

Direct static code injection vulnerability in admin_config.php in NavBoard 2.6.0 allows remote attackers to inject arbitrary PHP code into data/config.php via multiple parameters,…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2900

Published May 30, 2007

Multiple PHP remote file inclusion vulnerabilities in Scallywag 2005-04-25 allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to template.php in…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2816

Published May 22, 2007

Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) test1.php, (2)…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2826

Published May 22, 2007

PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[basedir] para…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2609

Published May 11, 2007

Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php;…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2572

Published May 9, 2007

PHP remote file inclusion vulnerability in modules/noevents/templates/mfa_theme.php in NoAh (aka PHP Content Architect, phparch) 0.9 pre 1.2 and earlier allows remote attackers to…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2575

Published May 9, 2007

PHP remote file inclusion vulnerability in watermark.php in the vm (aka Jean-Francois Laflamme) watermark 0.4.1 mod for Gallery allows remote attackers to execute arbitrary PHP co…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2521

Published May 8, 2007

PHP remote file inclusion vulnerability in common.php in E-GADS! before 2.2.7 allows remote attackers to execute arbitrary PHP code via a URL in the locale parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2458

Published May 2, 2007

Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery before 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parame…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2428

Published May 2, 2007

Multiple PHP remote file inclusion vulnerabilities in page.php in Ahhp-Portal allow remote attackers to execute arbitrary PHP code via a URL in the (1) fp or (2) sc parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2340

Published Apr 27, 2007

Multiple PHP remote file inclusion vulnerabilities in inc/include_all.inc.php in phporacleview allow remote attackers to execute arbitrary PHP code via a URL in the (1) page_dir o…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2319

Published Apr 26, 2007

PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolu…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2260

Published Apr 25, 2007

Multiple PHP remote file inclusion vulnerabilities in bibtex mase beta 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the bibtexrootrel parameter to (1) una…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2262

Published Apr 25, 2007

Multiple PHP remote file inclusion vulnerabilities in html/php/detail.php in Sinato jmuffin allow remote attackers to execute arbitrary PHP code via a URL in the (1) relPath and (…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2185

Published Apr 24, 2007

Multiple PHP remote file inclusion vulnerabilities in Supasite 1.23b allow remote attackers to execute arbitrary PHP code via a URL in the supa[db_path] parameter to (1) common_fu…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2144

Published Apr 19, 2007

PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! allows remote attackers to execute arbitrary P…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2084

Published Apr 18, 2007

PHP remote file inclusion vulnerability in MobilePublisherphp 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the auth_method parameter to (1) index.php,…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2091

Published Apr 18, 2007

PHP remote file inclusion vulnerability in blocks/tsdisplay4xoops_block2.php in tsdisplay4xoops (TSD4XOOPS, aka the TeamSpeak display module) 0.1 allows remote attackers to execut…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2070

Published Apr 18, 2007

Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools SunShop Shopping Cart before 3.5.1 allow remote attackers to execute arbitrary PHP code via a URL in the ab…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 6,351-6,375 of 6,681 CVEsPage 255 of 268