Vulnerabilities (CVE)

Filtered by vendor Preprojects.com Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-6054 1 Preprojects.com 1 Pre Courier And Cargo Business 2024-02-28 5.0 MEDIUM N/A
PreProjects Pre Courier and Cargo Business stores dbcourior.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request.
CVE-2008-0744 1 Preprojects.com 1 Pre Hotels \& Resorts Management System 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in user_login.asp in PreProjects.com Pre Hotels & Resorts Management System allows remote attackers to execute arbitrary SQL commands via the login page.
CVE-2006-2669 1 Preprojects.com 1 Pre Shopping Mall 2024-02-28 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"), (2) the prodid parameter in detail.php, and the (3) cid parameter in products.php.