Vulnerabilities > Ebayclonescript

DATE CVE VULNERABILITY TITLE RISK
2009-10-16 CVE-2009-3712 SQL Injection vulnerability in Ebayclonescript Ebay Clone 2009
Multiple SQL injection vulnerabilities in Ebay Clone 2009 allow remote attackers to execute arbitrary SQL commands via the (1) user_id parameter to feedback.php; and the item_id parameter to (2) view_full_size.php, (3) classifide_ad.php, and (4) crosspromoteitems.php.
network
low complexity
ebayclonescript CWE-89
7.5
2009-07-10 CVE-2009-2423 SQL Injection vulnerability in Ebayclonescript Ebay Clone 2009
SQL injection vulnerability in category.php in Ebay Clone 2009 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter in a list action.
network
low complexity
ebayclonescript CWE-89
7.5