Vulnerabilities (CVE)

Filtered by vendor Randshop Subscribe
Filtered by product Randshop
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3924 1 Randshop 1 Randshop 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in themes/kategorie/index.php in Randshop allows remote attackers to execute arbitrary SQL commands via the (1) kategorieid and (2) katid parameters.
CVE-2006-3375 1 Randshop 1 Randshop 2024-02-28 7.5 HIGH N/A
PHP remote file inclusion vulnerability in includes/header.inc.php in Randshop 1.1.1 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter.
CVE-2006-3374 1 Randshop 1 Randshop 2024-02-28 7.5 HIGH N/A
PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter.
CVE-2006-3537 1 Randshop 1 Randshop 2024-02-28 7.5 HIGH N/A
PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375.