Skip to content
Noroxi

phpauction records

4 published records for vendor phpauction.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

4 records
  • CVE-2008-1416
    38Monitor

    Multiple PHP remote file inclusion vulnerabilities in PHPauction GPL 2.51 allow remote attackers to execute arbitrary PHP code via a URL in

    MediumCVSS 6.8Proof of conceptEPSS 38%

    phpauction · phpauction gplMar 20, 2008

  • CVE-2008-7000
    31Monitor

    PHP remote file inclusion vulnerability in index.php in PHPAuction 3.2 allows remote attackers to execute arbitrary PHP code via a URL in th

    HighCVSS 7.5Proof of conceptEPSS 2%

    phpauction · phpauctionAug 19, 2009

  • CVE-2008-2900
    30Monitor

    SQL injection vulnerability in item.php in PHPAuction 3.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    HighCVSS 7.5Proof of conceptEPSS 1%

    phpauction · phpauctionJun 27, 2008

  • CVE-2008-6999
    20Monitor

    phpAuction 3.2, and possibly 3.3.0 GPL Basic edition, allows remote attackers to obtain configuration information via a direct request to ph

    MediumCVSS 5.0No exploitEPSS 1%

    phpauction · phpauctionAug 19, 2009