Skip to main content

Vendor/product archive

deltascripts / php_classifieds CVEs

Beta · best-effort

12 CVEs tagged to deltascripts / php_classifieds0 Critical, 9 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2010-4914

Published Oct 8, 2011

PHP remote file inclusion vulnerability in tools/phpmailer/class.phpmailer.php in PHP Classifieds 7.3 allows remote attackers to execute arbitrary PHP code via a URL in the lang_p…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5806

Published Dec 31, 2008

SQL injection vulnerability in login.php in DeltaScripts PHP Classifieds 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the admin_username parameter…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5805

Published Dec 31, 2008

SQL injection vulnerability in detail.php in DeltaScripts PHP Classifieds 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the siteid parameter, a dif…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2254

Published Apr 25, 2007

PHP remote file inclusion vulnerability in admin/setup/level2.php in PHP Classifieds 6.04, and probably earlier versions, allows remote attackers to execute arbitrary PHP code via…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5828

Published Nov 10, 2006

SQL injection vulnerability in detail.php in DeltaScripts PHP Classifieds 7.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5520

Published Oct 26, 2006

PHP remote file inclusion vulnerability in functions.php in DeltaScripts PHP Classifieds 7.1 allows remote attackers to execute arbitrary PHP code via a URL in the set_path parame…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5208

Published Oct 10, 2006

Multiple SQL injection vulnerabilities in PHP Classifieds 7.1 allow remote attackers to execute arbitrary SQL commands via (1) the catid_search parameter in search.php and (2) the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3329

Published Jun 30, 2006

SQL injection vulnerability in search.php in PHP/MySQL Classifieds (PHP Classifieds) allows remote attackers to execute arbitrary SQL commands via the rate parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3330

Published Jun 30, 2006

Cross-site scripting (XSS) vulnerability in AddAsset1.php in PHP/MySQL Classifieds (PHP Classifieds) allows remote attackers to execute arbitrary SQL commands via the (1) ProductN…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1532

Published Mar 30, 2006

Cross-site scripting (XSS) vulnerability in search.php in PHP Classifieds 6.18, 6.20, and possibly other versions, allows remote attackers to inject arbitrary web script or HTML v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0719

Published Feb 15, 2006

SQL injection vulnerability in member_login.php in PHP Classifieds 6.18 through 6.20 allows remote attackers to execute arbitrary SQL commands via the (1) username parameter, whic…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1702

Published Dec 31, 2002

Cross-site scripting vulnerability (XSS) in DeltaScripts PHP Classifieds 6.0.5 allows remote attackers to execute arbitrary script as other users via the URL parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1