Show filters
64 Total Results
Displaying 61-64 of 64
Sort by:
Attacker Value
Unknown

CVE-2012-3576

Disclosure Date: June 16, 2012 (last updated October 04, 2023)
Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/wpstorecart.
0
Attacker Value
Unknown

CVE-2008-1982

Disclosure Date: April 27, 2008 (last updated October 04, 2023)
SQL injection vulnerability in ss_load.php in the Spreadsheet (wpSS) 0.6 and earlier plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the ss_id parameter.
0
Attacker Value
Unknown

CVE-2006-5411

Disclosure Date: October 20, 2006 (last updated October 04, 2023)
Unrestricted file upload vulnerability in upload.php for Free Web Publishing System (FreeWPS), possibly 2.11 and earlier, allows remote attackers to upload and execute arbitrary PHP programs.
0
Attacker Value
Unknown

CVE-2006-1363

Disclosure Date: March 23, 2006 (last updated February 22, 2025)
images.php in Justin White (aka YTZ) Free Web Publishing System (FreeWPS) 2.11 allows remote attackers to execute arbitrary PHP code by uploading a .php file into the /upload directory as specified in the dirPath parameter, then performing a direct request to that file.
0