CVE-2008-6663 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in profile.php in PHPAuctions.info PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the auction_id parameter a different vector than CVE-2009-0106.
Reference
http://www.securityfocus.com/bid/29856 https://exchange.xforce.ibmcloud.com/vulnerabilities/43264 https://exchange.xforce.ibmcloud.com/vulnerabilities/50472 https://www.exploit-db.com/exploits/5879
Share on: