Skip to content
Noroxi

smarty records

31 published records for vendor smarty.

All records

31 records
  • CVE-2021-26120
    64This week

    Smarty before 3.1.39 allows code injection via an unexpected function name after a {function name= substring.

    CriticalCVSS 9.8No exploitEPSS 82%

    smarty · smartyFeb 21, 2021

  • The smarty_function_math function in libs/plugins/function.math.php in Smarty 2.6.22 allows context-dependent attackers to execute arbitrary

    CriticalCVSS 10.0Proof of conceptEPSS 14%

    smarty · smartyMay 18, 2009

  • Multiple unspecified vulnerabilities in the parser implementation in Smarty before 3.0.0 RC3 have unknown impact and remote attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Multiple unspecified vulnerabilities in Smarty before 3.0.0 beta 6 have unknown impact and attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Smarty before 3.0.0 beta 7 does not properly handle the <?php and ?> tags, which has unspecified impact and remote attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Unspecified vulnerability in the math plugin in Smarty before 3.0.0 RC1 has unknown impact and remote attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Unspecified vulnerability in the fetch plugin in Smarty before 3.0.2 has unknown impact and remote attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Smarty before 3.0.0 RC3 does not properly handle an on value of the asp_tags option in the php.ini file, which has unspecified impact and re

    CriticalCVSS 10.0No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • Smarty 3 before 3.1.32 is vulnerable to a PHP code injection when calling fetch() or display() functions on custom resources that does not s

    CriticalCVSS 9.8No exploitEPSS 3%

    smarty · smartyJan 3, 2018

  • PHP remote file inclusion vulnerability in libs/Smarty.class.php in Smarty 2.6.9 allows remote attackers to execute arbitrary PHP code via a

    CriticalCVSS 9.8No exploitEPSS 2%

    smarty · smartyMar 3, 2007

  • CVE-2011-1028
    39Monitor

    The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_

    CriticalCVSS 9.8No exploitEPSS 2%

    smarty · smartyNov 20, 2019

  • CVE-2010-4723
    37Monitor

    Smarty before 3.0.0, when security is enabled, does not prevent access to the (1) dynamic and (2) private object members of an assigned obje

    CriticalCVSS 9.3No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • PHP Code Injection by malicious block or filename in Smarty

    HighCVSS 8.8Proof of conceptEPSS 5%

    smarty · smartyMay 24, 2022

  • Access to restricted PHP code by dynamic static class access in smarty

    HighCVSS 8.8No exploitEPSS 2%

    smarty · smartyJan 10, 2022

  • Sandbox Escape by math function in smarty

    HighCVSS 8.8No exploitEPSS 2%

    smarty · smartyJan 10, 2022

  • Smarty before 3.1.39 allows a Sandbox Escape because $smarty.template_object can be accessed in sandbox mode.

    HighCVSS 7.5No exploitEPSS 9%

    smarty · smartyFeb 21, 2021

  • Smarty_Security::isTrustedResourceDir() in Smarty before 3.1.33 is prone to a path traversal vulnerability due to insufficient template code

    HighCVSS 7.5No exploitEPSS 3%

    smarty · smartySep 18, 2018

  • CVE-2014-8350
    31Monitor

    Smarty before 3.1.21 allows remote attackers to bypass the secure mode restrictions and execute arbitrary PHP code as demonstrated by "{lite

    HighCVSS 7.5No exploitEPSS 3%

    smarty · smartyNov 3, 2014

  • CVE-2008-4810
    31Monitor

    The _expand_quoted_text function in libs/Smarty_Compiler.class.php in Smarty 2.6.20 before r2797 allows remote attackers to execute arbitrar

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyOct 31, 2008

  • CVE-2009-5053
    31Monitor

    Unspecified vulnerability in Smarty before 3.0.0 beta 6 allows remote attackers to execute arbitrary PHP code by injecting this code into a

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • CVE-2008-1066
    31Monitor

    The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used by Serendipity (S9Y) and other products, allows attackers to call arb

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyFeb 28, 2008

  • CVE-2008-4811
    30Monitor

    The _expand_quoted_text function in libs/Smarty_Compiler.class.php in Smarty 2.6.20 r2797 and earlier allows remote attackers to execute arb

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyOct 31, 2008

  • CVE-2009-5054
    30Monitor

    Smarty before 3.0.0 beta 4 does not consider the umask value when setting the permissions of files, which might allow attackers to bypass in

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyFeb 3, 2011

  • CVE-2005-0913
    30Monitor

    Unknown vulnerability in the regex_replace modifier (modifier.regex_replace.php) in Smarty before 2.6.8 allows attackers to execute arbitrar

    HighCVSS 7.5No exploitEPSS 2%

    smarty · smartyMay 2, 2005

  • CVE-2006-7193
    30Monitor

    PHP remote file inclusion vulnerability in unit_test/test_cases.php in Smarty 2.6.1 allows remote attackers to execute arbitrary PHP code vi

    HighCVSS 7.5No exploitEPSS 1%

    smarty · smartyApr 12, 2007