Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown
CVE-2010-4908
Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown
CVE-2009-2016
Disclosure Date: June 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in products.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the cid parameter.
0
Attacker Value
Unknown
CVE-2008-6227
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
0
Attacker Value
Unknown
CVE-2008-6228
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown
CVE-2008-6232
Disclosure Date: February 20, 2009 (last updated October 04, 2023)
Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
0
Attacker Value
Unknown
CVE-2008-6151
Disclosure Date: February 16, 2009 (last updated October 04, 2023)
SQL injection vulnerability in shpdetails.asp in SepCity Shopping Mall allows remote attackers to execute arbitrary SQL commands via the ID parameter.
0
Attacker Value
Unknown
CVE-2008-2114
Disclosure Date: May 08, 2008 (last updated October 04, 2023)
SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
0
Attacker Value
Unknown
CVE-2007-2674
Disclosure Date: May 14, 2007 (last updated October 04, 2023)
SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter.
0
Attacker Value
Unknown
CVE-2006-2669
Disclosure Date: May 30, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"), (2) the prodid parameter in detail.php, and the (3) cid parameter in products.php.
0
Attacker Value
Unknown
CVE-2005-2259
Disclosure Date: July 13, 2005 (last updated February 22, 2025)
The dispallclosed2 function in dispallclosed.pl for multiple USANet Creations products, including (1) USANet Shopping Mall Software, (2) Domain Name Auction Software, (3) Standard Classified Ads Software, and (4) MakeBid Reverse Auction allows remote attackers to execute arbitrary code via shell metacharacters in the DISPCLOSED parameter.
0