Search CVE reports


Toggle filters

31 – 33 of 33 results


CVE-2008-1066

Medium priority

Some fixes available 4 of 8

The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used by Serendipity (S9Y) and other products, allows attackers to call arbitrary PHP functions via templates, related to a '\0' character in a search string.

2 affected packages

gallery2, smarty

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gallery2
smarty
Show less packages

CVE-2006-7105

Medium priority
Not affected

PHP remote file inclusion vulnerability in libs/Smarty.class.php in Smarty 2.6.9 allows remote attackers to execute arbitrary PHP code via a URL in the filename parameter. NOTE: in the original disclosure, filename is used in a...

1 affected package

smarty

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
smarty
Show less packages

CVE-2005-0913

Medium priority
Not affected

Unknown vulnerability in the regex_replace modifier (modifier.regex_replace.php) in Smarty before 2.6.8 allows attackers to execute arbitrary PHP code.

1 affected package

smarty

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
smarty
Show less packages