Vulnerabilities
Vulnerable Software
PHP remote file inclusion vulnerability in phpAdsNew/view.inc.php in Albasoftware Phpauction 2.1 and possibly later versions, with phpAdsNew 2.0.5, allows remote attackers to execute arbitrary PHP code via a URL in the phpAds_path parameter.
CVSS Score
7.5
EPSS Score
0.125
Published
2006-08-05
login.php for PHPAuction allows remote attackers to gain privileges via a direct call to login.php with the action parameter set to "insert," which adds the provided username to the adminUsers table.
CVSS Score
7.5
EPSS Score
0.032
Published
2002-10-04


Contact Us

Shodan ® - All rights reserved