Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown

CVE-2010-4908

Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown

CVE-2009-2016

Disclosure Date: June 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in products.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the cid parameter.
0
Attacker Value
Unknown

CVE-2008-6227

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
0
Attacker Value
Unknown

CVE-2008-6228

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown

CVE-2008-6232

Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown

CVE-2008-6151

Disclosure Date: February 16, 2009 (last updated October 04, 2023)
SQL injection vulnerability in shpdetails.asp in SepCity Shopping Mall allows remote attackers to execute arbitrary SQL commands via the ID parameter.
0
Attacker Value
Unknown

CVE-2008-2114

Disclosure Date: May 08, 2008 (last updated October 04, 2023)
SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
0
Attacker Value
Unknown

CVE-2007-2674

Disclosure Date: May 14, 2007 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown

CVE-2006-2669

Disclosure Date: May 30, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"), (2) the prodid parameter in detail.php, and the (3) cid parameter in products.php.
0
Attacker Value
Unknown

CVE-2005-2259

Disclosure Date: July 13, 2005 (last updated February 22, 2025)
The dispallclosed2 function in dispallclosed.pl for multiple USANet Creations products, including (1) USANet Shopping Mall Software, (2) Domain Name Auction Software, (3) Standard Classified Ads Software, and (4) MakeBid Reverse Auction allows remote attackers to execute arbitrary code via shell metacharacters in the DISPCLOSED parameter.
0