Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2008-6227

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
0
Attacker Value
Unknown

CVE-2008-6228

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown

CVE-2008-6232

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown

CVE-2008-2114

Disclosure Date: May 08, 2008 (last updated October 04, 2023)
SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
0
Attacker Value
Unknown

CVE-2007-2674

Disclosure Date: May 14, 2007 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown

CVE-2006-2669

Disclosure Date: May 30, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"), (2) the prodid parameter in detail.php, and the (3) cid parameter in products.php.
0