Vulnerabilities > AJ Square

DATE CVE VULNERABILITY TITLE RISK
2008-06-25 CVE-2008-2860 SQL Injection vulnerability in AJ Square AJ Auction Web2.0
SQL injection vulnerability in category.php in AJSquare AJ Auction Pro web 2.0 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.
network
low complexity
aj-square CWE-89
7.5
2008-06-03 CVE-2008-2532 SQL Injection vulnerability in AJ Square AJ Hyip
SQL injection vulnerability in forum/topic_detail.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
aj-square CWE-89
7.5
2007-03-07 CVE-2007-1298 SQL-Injection vulnerability in AJ Square Ajauction 1.0
SQL injection vulnerability in subcat.php in AJ Auction 1.0 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.
network
low complexity
aj-square
7.5
2007-03-07 CVE-2007-1297 SQL Injection vulnerability in AJ Square Ajdating 1.0
SQL injection vulnerability in view_profile.php in AJDating 1.0 allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
network
low complexity
aj-square
7.5
2007-03-07 CVE-2007-1296 SQL-Injection vulnerability in AJ Square AJ Classifieds 1.0
SQL injection vulnerability in postingdetails.php in AJ Classifieds 1.0 allows remote attackers to execute arbitrary SQL commands via the postingid parameter.
network
low complexity
aj-square
7.5