Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2008-6227
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
0
Attacker Value
Unknown
CVE-2008-6228
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown
CVE-2008-6232
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown
CVE-2008-2114
Disclosure Date: May 08, 2008 (last updated October 04, 2023)
SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
0
Attacker Value
Unknown
CVE-2007-2674
Disclosure Date: May 14, 2007 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown
CVE-2006-2669
Disclosure Date: May 30, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"), (2) the prodid parameter in detail.php, and the (3) cid parameter in products.php.
0