Show filters
32 Total Results
Displaying 21-30 of 32
Sort by:
Attacker Value
Unknown

CVE-2008-4872

Disclosure Date: November 01, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in bidhistory.php in iTechBids Gold 5.0 allows remote attackers to inject arbitrary web script or HTML via the item_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2008-3402

Disclosure Date: July 31, 2008 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in HIOX Browser Statistics (HBS) 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the hm parameter to (1) hioxupdate.php and (2) hioxstats.php.
0
Attacker Value
Unknown

CVE-2008-3401

Disclosure Date: July 31, 2008 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in hioxRandomAd.php in HIOX Random Ad (HRA) 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.
0
Attacker Value
Unknown

CVE-2008-3237

Disclosure Date: July 21, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to inject arbitrary web script or HTML via the productid parameter.
0
Attacker Value
Unknown

CVE-2008-3238

Disclosure Date: July 21, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands via (1) the seller_id parameter in sellers_othersitem.php, (2) the productid parameter in classifieds.php, and (3) the id parameter in shop.php.
0
Attacker Value
Unknown

CVE-2008-0776

Disclosure Date: February 14, 2008 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in iTechBids Gold 6.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
0
Attacker Value
Unknown

CVE-2008-0692

Disclosure Date: February 12, 2008 (last updated October 04, 2023)
SQL injection vulnerability in bidhistory.php in iTechBids 3 Gold and 5.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
0
Attacker Value
Unknown

CVE-2008-0685

Disclosure Date: February 12, 2008 (last updated October 04, 2023)
SQL injection vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.
0
Attacker Value
Unknown

CVE-2008-0684

Disclosure Date: February 12, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to inject arbitrary web script or HTML via the CatID parameter.
0
Attacker Value
Unknown

CVE-2006-6154

Disclosure Date: November 28, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.
0