Known Vulnerabilities for products from Torrentflux

Listed below are 14 of the newest known vulnerabilities associated with the vendor "Torrentflux".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2008-6585 json Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the au... 6.8 - MEDIUM 2009-04-03 2018-10-11
CVE-2008-6584 json html/index.php in TorrentFlux 2.3 allows remote authenticated users to execute arbitrary code via a URL with a file containin... 6 - MEDIUM 2009-04-03 2018-10-11
CVE-2008-2020 json The CAPTCHA implementation as used in (1) Francisco Burzi PHP-Nuke 7.0 and 8.1, (2) my123tkShop e-Commerce-Suite (aka 123tkSh... 6.8 - MEDIUM 2008-04-30 2018-10-11
CVE-2006-6604 json Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitra... 6.5 - MEDIUM 2006-12-15 2017-10-19
CVE-2006-6600 json Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web ... 6 - MEDIUM 2006-12-15 2008-09-05
CVE-2006-6599 json maketorrent.php in TorrentFlux 2.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters (... 6 - MEDIUM 2006-12-15 2017-10-19
CVE-2006-6598 json Directory traversal vulnerability in viewnfo.php in (1) TorrentFlux before 2.2 and (2) torrentflux-b4rt before 2.1-b4rt-972 a... 6.5 - MEDIUM 2006-12-15 2017-10-19
CVE-2006-6331 json metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary com... 6 - MEDIUM 2006-12-06 2023-11-07
CVE-2006-6330 json index.php for TorrentFlux 2.2 allows remote registered users to execute arbitrary commands via shell metacharacters in the ki... 6 - MEDIUM 2006-12-06 2017-10-19
CVE-2006-6329 json index.php for TorrentFlux 2.2 allows remote attackers to delete files by specifying the target filename in the delfile parame... 4.9 - MEDIUM 2006-12-06 2017-10-19
CVE-2006-6328 json Directory traversal vulnerability in index.php for TorrentFlux 2.2 allows remote attackers to create or overwrite arbitrary f... 4.9 - MEDIUM 2006-12-06 2017-10-19
CVE-2006-5609 json Directory traversal vulnerability in dir.php in TorrentFlux 2.1 allows remote attackers to list arbitrary directories via "\.... 5 - MEDIUM 2006-10-30 2018-10-17
CVE-2006-5451 json Multiple cross-site scripting (XSS) vulnerabilities in TorrentFlux 2.1 allow remote attackers to inject arbitrary web script ... 2.6 - LOW 2006-10-23 2018-10-17
CVE-2006-5227 json Cross-site scripting (XSS) vulnerability in admin.php in TorrentFlux 2.1 allows remote attackers to inject arbitrary web scri... 6.8 - MEDIUM 2006-10-10 2018-10-17

Known software with vulnerabilities from Torrentflux

Type Vendor Product Version
ApplicationTorrentfluxTorrentflux2.4