Vulnerabilities (CVE)

Filtered by vendor Preproject Subscribe
Filtered by product Pre Multi-vendor Shopping Malls
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6227 1 Preproject 1 Pre Multi-vendor Shopping Malls 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.
CVE-2008-6228 1 Preproject 1 Pre Multi-vendor Shopping Malls 2024-02-04 7.5 HIGH N/A
Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".