Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fckeditor fckeditor 2.2 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2006-0658
Incomplete blacklist vulnerability in connector.php in FCKeditor 2.0 and 2.2, as used in products such as RunCMS, allows remote malicious users to upload and execute arbitrary script files by giving the files specific extensions that are not listed in the Config[DeniedExtensions]...
Fckeditor Fckeditor 2.0
Fckeditor Fckeditor 2.2
2 EDB exploits
4.3
CVSSv2
CVE-2009-2324
Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor prior to 2.6.4.1 allow remote malicious users to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.
Fckeditor Fckeditor 2.0 Fc
Fckeditor Fckeditor 2.0 Rc2
Fckeditor Fckeditor 2.0rc2
Fckeditor Fckeditor 2.0rc3
Fckeditor Fckeditor 2.2
Fckeditor Fckeditor 2.6
Fckeditor Fckeditor 2.5.1
Fckeditor Fckeditor 2.3.1
Fckeditor Fckeditor 2.3
Fckeditor Fckeditor 2.4.3
Fckeditor Fckeditor 2.4.2
Fckeditor Fckeditor 2.5
Fckeditor Fckeditor 2.1.1
Fckeditor Fckeditor 2.6.2
Fckeditor Fckeditor 2.6.1
Fckeditor Fckeditor 2.3.3
Fckeditor Fckeditor 2.3.2
Fckeditor Fckeditor 2.6.4
Fckeditor Fckeditor 2.0
Fckeditor Fckeditor 2.6.3
Fckeditor Fckeditor 2.4.1
Fckeditor Fckeditor 2.4
7.5
CVSSv2
CVE-2009-2265
Multiple directory traversal vulnerabilities in FCKeditor prior to 2.6.4.1 allow remote malicious users to create executable files in arbitrary directories via directory traversal sequences in the input to unspecified connector modules, as exploited in the wild for remote code ex...
Fckeditor Fckeditor
Fckeditor Fckeditor 2.4.3
Fckeditor Fckeditor 2.5.1
Fckeditor Fckeditor 2.5
Fckeditor Fckeditor 2.3
Fckeditor Fckeditor 2.1.1
Fckeditor Fckeditor 2.0 Rc2
Fckeditor Fckeditor 2.0rc2
Fckeditor Fckeditor 2.6.3
Fckeditor Fckeditor 2.6.2
Fckeditor Fckeditor 2.4
Fckeditor Fckeditor 2.3.3
Fckeditor Fckeditor 2.0
Fckeditor Fckeditor 2.0 Fc
Fckeditor Fckeditor 2.4.2
Fckeditor Fckeditor 2.4.1
Fckeditor Fckeditor 2.1
Fckeditor Fckeditor 2.6.4
Fckeditor Fckeditor 2.0rc3
Fckeditor Fckeditor 2.2
Fckeditor Fckeditor 2.6.1
Fckeditor Fckeditor 2.6
1 EDB exploit
6 Github repositories
5
CVSSv2
CVE-2006-2529
editor/filemanager/upload/php/upload.php in FCKeditor prior to 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote malicious users to upload arbitrary file types. NOTE: It is not clear whether this is related to CVE-2006-0658.
Fckeditor Fckeditor 2.2
7.5
CVSSv2
CVE-2008-6178
Unrestricted file upload vulnerability in editor/filemanager/browser/default/connectors/php/connector.php in FCKeditor 2.2, as used in Falt4 CMS, Nuke ET, and other products, allows remote malicious users to execute arbitrary code by creating a file with PHP sequences preceded by...
Phplist Phplist 2.10.1
Fckeditor Fckeditor 2.4.3
Phplist Phplist 2.10.5
Phplist Phplist 2.10.4
Fckeditor Fckeditor 2.3beta
Fckeditor Fckeditor 2.0rc2
Fckeditor Fckeditor 2.0rc3
Fckeditor Fckeditor 2.2
Phplist Phplist 2.10.3
Phplist Phplist 2.10.2
Phplist Phplist 2.10.6
2 EDB exploits
4.3
CVSSv2
CVE-2012-4000
Cross-site scripting (XSS) vulnerability in the print_textinputs_var function in editor/dialog/fck_spellerpages/spellerpages/server-scripts/spellchecker.php in FCKeditor 2.6.7 and previous versions allows remote malicious users to inject arbitrary web script or HTML via textinput...
Ckeditor Fckeditor 2.6.3
Ckeditor Fckeditor 2.5
Ckeditor Fckeditor 2.4.3
Ckeditor Fckeditor 2.3
Ckeditor Fckeditor 2.0
Ckeditor Fckeditor 1.2.2
Ckeditor Fckeditor 1.2
Ckeditor Fckeditor 0.9.4
Ckeditor Fckeditor 0.9.3
Ckeditor Fckeditor
Ckeditor Fckeditor 2.6.5
Ckeditor Fckeditor 2.6
Ckeditor Fckeditor 2.4
Ckeditor Fckeditor 2.3.3
Ckeditor Fckeditor 2.1
Ckeditor Fckeditor 1.4
Ckeditor Fckeditor 1.3.1
Ckeditor Fckeditor 1.0
Ckeditor Fckeditor 0.8.5
Ckeditor Fckeditor 0.8
Ckeditor Fckeditor 2.6.4
Ckeditor Fckeditor 2.6.4.1
1 EDB exploit
4.3
CVSSv2
CVE-2012-2066
Cross-site scripting (XSS) vulnerability in the FCKeditor module 6.x-2.x prior to 6.x-2.3 and the CKEditor module 6.x-1.x prior to 6.x-1.9 and 7.x-1.x prior to 7.x-1.7 for Drupal allows remote authenticated users or remote malicious users to inject arbitrary web script or HTML vi...
Ckeditor Fckeditor 6.x-2.3
Ckeditor Fckeditor 6.x-2.0
Ckeditor Fckeditor 6.x-1.3
Ckeditor Fckeditor 6.x-1.1
Ckeditor Fckeditor 6.x-2.2
Ckeditor Fckeditor 6.x-1.4
Ckeditor Fckeditor 6.x-1.x
Ckeditor Fckeditor 6.x-2.1
Ckeditor Fckeditor 6.x-2.x
Ckeditor Fckeditor 6.x-1.2-1
Ckeditor Fckeditor 6.x-1.2
Ckeditor Ckeditor 6.x-1.5
Ckeditor Ckeditor 6.x-1.4
Ckeditor Ckeditor 7.x-1.6
Ckeditor Ckeditor 7.x-1.5
Ckeditor Ckeditor 7.x-1.0
Ckeditor Ckeditor 6.x-1.3
Ckeditor Ckeditor 6.x-1.2
Ckeditor Ckeditor 7.x-1.4
Ckeditor Ckeditor 7.x-1.3
Ckeditor Ckeditor 6.x-1.1
Ckeditor Ckeditor 6.x-1.0
6.8
CVSSv2
CVE-2012-2067
Unspecified vulnerability in the CKeditor module 6.x-2.x prior to 6.x-2.3 and the CKEditor module 6.x-1.x prior to 6.x-1.9 and 7.x-1.x prior to 7.x-1.7 for Drupal, when the core PHP module is enabled, allows remote authenticated users or remote malicious users to execute arbitrar...
Ckeditor Fckeditor 6.x-2.1
Ckeditor Fckeditor 6.x-2.0
Ckeditor Fckeditor 6.x-1.4
Ckeditor Fckeditor 6.x-1.3
Ckeditor Fckeditor 6.x-1.2
Ckeditor Fckeditor 6.x-1.1
Ckeditor Fckeditor 6.x-2.3
Ckeditor Fckeditor 6.x-2.x
Ckeditor Fckeditor 6.x-1.2-1
Ckeditor Fckeditor 6.x-2.2
Ckeditor Fckeditor 6.x-1.x
Ckeditor Ckeditor 6.x-1.7
Ckeditor Ckeditor 6.x-1.6
Ckeditor Ckeditor 6.x-1.x
Ckeditor Ckeditor 6.x-1.0
Ckeditor Ckeditor 7.x-1.0
Ckeditor Ckeditor 7.x-1.x
Ckeditor Ckeditor 6.x-1.5
Ckeditor Ckeditor 6.x-1.4
Ckeditor Ckeditor 7.x-1.6
Ckeditor Ckeditor 7.x-1.5
Ckeditor Ckeditor 6.x-1.1
4.3
CVSSv2
CVE-2008-5729
Multiple cross-site scripting (XSS) vulnerabilities in AIST NetCat 3.12 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) form and (2) control parameters to FCKeditor/neditor.php, and the (3) path parameter to admin/siteinfo/ifr...
Netcat Netcat 2.3
Netcat Netcat 2.2
Netcat Netcat
Netcat Netcat 1.1
Netcat Netcat 3.0
Netcat Netcat 2.4
Netcat Netcat 2.1
Netcat Netcat 2.0
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48700
CVE-2022-48689
CVE-2024-27956
CVE-2023-6363
SQL
NULL pointer dereference
CVE-2023-41830
CVE-2015-2051
arbitrary
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started