Skip to main content

Vendor archive

e-topbiz CVEs

Beta · best-effort

12 CVEs tagged to vendor e-topbiz0 Critical, 11 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-6307

Published Feb 26, 2009

E-topbiz Link Back Checker 1 allows remote attackers to bypass authentication and gain administrative access by setting the auth cookie to "admin."

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6264

Published Feb 24, 2009

SQL injection vulnerability in admin/admin.php in E-topbiz Slide Popups 1.0 allows remote attackers to execute arbitrary SQL commands via the password parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6261

Published Feb 24, 2009

SQL injection vulnerability in view.php in E-topbiz AdManager 4 allows remote attackers to execute arbitrary SQL commands via the group parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5804

Published Dec 31, 2008

SQL injection vulnerability in admin/admin_catalog.php in e-topbiz Number Links 1 Php Script allows remote attackers to execute arbitrary SQL commands via the id parameter in an e…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5803

Published Dec 31, 2008

SQL injection vulnerability in admin/login.php in E-topbiz Online Store 1.0 allows remote attackers to execute arbitrary SQL commands via the user parameter (aka username field).…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5802

Published Dec 31, 2008

SQL injection vulnerability in index.php in E-topbiz Online Store 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-5488

Published Dec 12, 2008

SQL injection vulnerability in admin.php in E-topbiz Domain Shop 2 allows remote attackers to execute arbitrary SQL commands via the passfromform parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3490

Published Aug 6, 2008

SQL injection vulnerability in members/mail.php in E-topbiz Online Dating 3 1.0 allows remote authenticated users to execute arbitrary SQL commands via the mail_id parameter in a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3346

Published Jul 28, 2008

SQL injection vulnerability in product_detail.php in ShopCart DX allows remote attackers to execute arbitrary SQL commands via the pid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3204

Published Jul 17, 2008

SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2867

Published Jun 26, 2008

SQL injection vulnerability in adclick.php in E-topbiz Viral DX 1 2.07 allows remote attackers to execute arbitrary SQL commands via the bannerid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2869

Published Jun 26, 2008

SQL injection vulnerability in out.php in E-topbiz Link ADS 1 allows remote attackers to execute arbitrary SQL commands via the linkid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1