Skip to main content

Vendor/product archive

samedia / landshop CVEs

Beta · best-effort

5 CVEs tagged to samedia / landshop0 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2012-5900

Published Nov 17, 2012

Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) OB_ID parameter in a single action to admin/a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-5899

Published Nov 17, 2012

Cross-site scripting (XSS) vulnerability in admin/action/objects.php in SAMEDIA LandShop 0.9.2 allows remote attackers to inject arbitrary web script or HTML via the OTR_HEADS[] p…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5898

Published Nov 17, 2012

Cross-site request forgery (CSRF) vulnerability in SAMEDIA LandShop 0.9.2 allows remote attackers to hijack the authentication of administrators for requests that change account s…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5914

Published Nov 15, 2006

SQL injection vulnerability in ls.php in SAMEDIA LandShop allows remote attackers to execute arbitrary SQL commands via the infield parameter. NOTE: the start, search_order, sear…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5915

Published Nov 15, 2006

Multiple cross-site scripting (XSS) vulnerabilities in ls.php in SAMEDIA LandShop allow remote attackers to inject arbitrary web script or HTML via the (1) start, (2) CAT_ID, (3)…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1