Skip to content
Noroxi

uploadscript records

3 published records for vendor uploadscript.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    Attack profile

    All records

    3 records
    • admin.php in UploadScript 1.0 does not check for the original password before making a change to a new password, which allows remote attacke

      CriticalCVSS 10.0Proof of conceptEPSS 4%

      uploadscript · uploadimageJan 11, 2008

    • CVE-2006-6377
      31Monitor

      Uploadscript 1.2 and earlier stores sensitive data under the web root with insufficient access control, which allows remote attackers to obt

      HighCVSS 7.5Proof of conceptEPSS 3%

      uploadscript · uploadscriptDec 7, 2006

    • CVE-2008-0245
      31Monitor

      admin.php in UploadImage 1.0 does not check for the original password before making a change to a new password, which allows remote attacker

      HighCVSS 7.5Proof of conceptEPSS 2%

      uploadscript · uploadimageJan 11, 2008