RSS   Vulnerabilities for 'Randshop'   RSS

2006-07-12
 
CVE-2006-3537

CWE-Other
 

 
PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375.

 
2006-07-06
 
CVE-2006-3375

 

 
PHP remote file inclusion vulnerability in includes/header.inc.php in Randshop 1.1.1 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter.

 
 
CVE-2006-3374

CWE-Other
 

 
PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter.

 
2005-11-30
 
CVE-2005-3924

 

 
SQL injection vulnerability in themes/kategorie/index.php in Randshop allows remote attackers to execute arbitrary SQL commands via the (1) kategorieid and (2) katid parameters.

 


Copyright 2024, cxsecurity.com

 

Back to Top