VYPR

Pre Multi Vendor Shopping Malls

by Preproject

CVEs (2)

  • CVE-2008-6228Feb 20, 2009
    risk 0.03cvss epss 0.02

    Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".

  • CVE-2008-6227Feb 20, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in buyer_detail.php in Pre Multi-Vendor Shopping Malls allows remote attackers to execute arbitrary SQL commands via the (1) sid and (2) cid parameters.