Vulnerabilities (CVE)

Filtered by vendor 2daybiz Subscribe
Filtered by product Auction Script
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-1706 1 2daybiz 1 Auction Script 2024-02-04 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in login.php in 2daybiz Auction Script allow remote attackers to execute arbitrary SQL commands via (1) the login field (aka the username parameter), and possibly (2) the password field, to index.php. NOTE: some of these details are obtained from third party information.