VYPR

Advanced Webhost Billing System

by Awbs

CVEs (2)

  • CVE-2011-0510Jan 20, 2011
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in cart.php in Advanced Webhost Billing System (AWBS) 2.9.2 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the oid parameter in an add_other action.

  • CVE-2008-2903Jun 30, 2008
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in news.php in Advanced Webhost Billing System (AWBS) 2.3.3 through 2.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the viewnews parameter.