Vulnerabilities > SIR
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-01-27 | CVE-2009-0290 | Path Traversal vulnerability in SIR Gnuboard 4.31.03 Directory traversal vulnerability in common.php in SIR GNUBoard 4.31.03 allows remote attackers to include and execute arbitrary local files via a .. | 6.8 |
2005-05-02 | CVE-2005-0269 | Improper Handling of Case Sensitivity vulnerability in SIR Gnuboard 3.40 The file extension check in GNUBoard 3.40 and earlier only verifies extensions that contain all lowercase letters, which allows remote attackers to upload arbitrary files via file extensions that include uppercase letters. | 9.8 |
2004-12-31 | CVE-2004-1403 | Remote File Include vulnerability in SIR GNUBoard PHP remote file inclusion vulnerability in index.php in GNUBoard 3.39 and earlier allows remote attackers to execute arbitrary PHP code by modifying the doc parameter to reference a URL on a remote web server that contains the code. | 7.5 |