Skip to content
Noroxi

phpauctions records

5 published records for vendor phpauctions.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2009-0108
    31Monitor

    PHPAuctions (aka PHPAuctionSystem) allows remote attackers to bypass authentication and gain administrative access via modified (1) PHPAUCTI

    HighCVSS 7.5Proof of conceptEPSS 3%

    phpauctions · phpauctionsJan 9, 2009

  • CVE-2009-0106
    30Monitor

    SQL injection vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands v

    HighCVSS 7.5Proof of conceptEPSS 1%

    phpauctions · phpauctionsJan 9, 2009

  • CVE-2008-3487
    30Monitor

    SQL injection vulnerability in profile.php in PHPAuction GPL Enhanced 2.51 allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    phpauctions · phpauction gpl enhancedAug 6, 2008

  • CVE-2008-6663
    30Monitor

    SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitra

    HighCVSS 7.5Proof of conceptEPSS 1%

    phpauctions · phpauctionsApr 8, 2009

  • CVE-2009-0107
    17Monitor

    Cross-site scripting (XSS) vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to inject arbitrary we

    MediumCVSS 4.3Proof of conceptEPSS 1%

    phpauctions · phpauctionsJan 9, 2009