Vulnerabilities > Radscripts > Radbids

DATE CVE VULNERABILITY TITLE RISK
2009-10-02 CVE-2009-3530 Cross-Site Scripting vulnerability in Radscripts Radbids 4
Cross-site scripting (XSS) vulnerability in storefront.php in RadScripts RadBids Gold 4 allows remote attackers to inject arbitrary web script or HTML via the mode parameter.
network
radscripts CWE-79
4.3
2009-10-02 CVE-2009-3529 SQL Injection vulnerability in Radscripts Radbids 4
SQL injection vulnerability in index.php in RadScripts RadBids Gold 4 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a view_forum action, a different vector than CVE-2005-1074.
network
radscripts CWE-89
6.8
2005-05-02 CVE-2005-1075 Multiple vulnerability in Radscripts Radbids 2
Multiple cross-site scripting (XSS) vulnerabilities in RadScripts RadBids Gold 2 allow remote attackers to inject arbitrary web script or HTML via (1) the farea parameter to faq.php or the (2) cat, (3) order, or (4) area parameters to index.php.
network
radscripts
4.3
2005-05-02 CVE-2005-1074 Multiple vulnerability in Radscripts Radbids 2
SQL injection vulnerability in index.php for RadScripts RadBids Gold 2 allows remote attackers to execute arbitrary SQL commands via the mode parameter.
network
low complexity
radscripts
7.5
2005-05-02 CVE-2005-1073 Multiple vulnerability in Radscripts Radbids 2
Directory traversal vulnerability in index.php for RadScripts RadBids Gold 2 allows remote attackers to read arbitrary files via the read parameter.
network
low complexity
radscripts
5.0