Show filters
32 Total Results
Displaying 21-30 of 32
Sort by:
Attacker Value
Unknown
CVE-2008-4872
Disclosure Date: November 01, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in bidhistory.php in iTechBids Gold 5.0 allows remote attackers to inject arbitrary web script or HTML via the item_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-3402
Disclosure Date: July 31, 2008 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in HIOX Browser Statistics (HBS) 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the hm parameter to (1) hioxupdate.php and (2) hioxstats.php.
0
Attacker Value
Unknown
CVE-2008-3401
Disclosure Date: July 31, 2008 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in hioxRandomAd.php in HIOX Random Ad (HRA) 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.
0
Attacker Value
Unknown
CVE-2008-3237
Disclosure Date: July 21, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to inject arbitrary web script or HTML via the productid parameter.
0
Attacker Value
Unknown
CVE-2008-3238
Disclosure Date: July 21, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands via (1) the seller_id parameter in sellers_othersitem.php, (2) the productid parameter in classifieds.php, and (3) the id parameter in shop.php.
0
Attacker Value
Unknown
CVE-2008-0776
Disclosure Date: February 14, 2008 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in iTechBids Gold 6.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
0
Attacker Value
Unknown
CVE-2008-0692
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
SQL injection vulnerability in bidhistory.php in iTechBids 3 Gold and 5.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
0
Attacker Value
Unknown
CVE-2008-0685
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
SQL injection vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.
0
Attacker Value
Unknown
CVE-2008-0684
Disclosure Date: February 12, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to inject arbitrary web script or HTML via the CatID parameter.
0
Attacker Value
Unknown
CVE-2006-6154
Disclosure Date: November 28, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.
0