VYPR

Randshop

by Randshop

CVEs (4)

  • CVE-2006-3375Jul 6, 2006
    risk 0.03cvss epss 0.06

    PHP remote file inclusion vulnerability in includes/header.inc.php in Randshop 1.1.1 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter.

  • CVE-2006-3374Jul 6, 2006
    risk 0.03cvss epss 0.01

    PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter.

  • CVE-2005-3924Nov 30, 2005
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in themes/kategorie/index.php in Randshop allows remote attackers to execute arbitrary SQL commands via the (1) kategorieid and (2) katid parameters.

  • CVE-2006-3537Jul 12, 2006
    risk 0.00cvss epss 0.01

    PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375.