Skip to main content

Vendor archive

itechscripts CVEs

Beta · best-effort

24 CVEs tagged to vendor itechscripts1 Critical, 9 High, 14 Medium, 0 Low, 0 Unrated.

CVE-2017-20138

Published Jul 16, 2022

A vulnerability was found in Itech Auction Script 6.49. It has been classified as critical. This affects an unknown part of the file /mcategory.php. The manipulation of the argume…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20137

Published Jul 16, 2022

A vulnerability was found in Itech B2B Script 4.28. It has been rated as critical. This issue affects some unknown processing of the file /catcompany.php. The manipulation of the…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20136

Published Jul 16, 2022

A vulnerability classified as critical has been found in Itech Classifieds Script 7.27. Affected is an unknown function of the file /subpage.php. The manipulation of the argument…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20135

Published Jul 16, 2022

A vulnerability classified as critical was found in Itech Dating Script 3.26. Affected by this vulnerability is an unknown functionality of the file /see_more_details.php. The man…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20134

Published Jul 16, 2022

A vulnerability, which was classified as critical, has been found in Itech Freelancer Script 5.13. Affected by this issue is some unknown functionality of the file /category.php.…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20133

Published Jul 16, 2022

A vulnerability, which was classified as critical, was found in Itech Job Portal Script 9.13. This affects an unknown part of the file /admin. The manipulation leads to improper a…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2017-20132

Published Jul 16, 2022

A vulnerability was found in Itech Multi Vendor Script 6.49 and classified as critical. This issue affects some unknown processing of the file /multi-vendor-shopping-script/produc…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20131

Published Jul 16, 2022

A vulnerability was found in Itech News Portal 6.28. It has been classified as critical. Affected is an unknown function of the file /news-portal-script/information.php. The manip…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-20130

Published Jul 16, 2022

A vulnerability was found in Itech Real Estate Script 3.12. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /real-estate-s…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-15963

Published Oct 29, 2017

iTech Gigs Script 1.21 allows SQL Injection via the browse-scategory.php sc parameter or the service-provider.php ser parameter.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-100020

Published Jan 13, 2015

SQL injection vulnerability in ChangeEmail.php in iTechClassifieds 3.03.057 allows remote attackers to execute arbitrary SQL commands via the PreviewNum parameter. NOTE: the CatI…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4281

Published Aug 13, 2012

Multiple SQL injection vulnerabilities in Travelon Express 6.2.2 allow remote attackers to execute arbitrary SQL commands via the hid parameter to (1) holiday.php or (2) holiday_b…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4266

Published Aug 13, 2012

Cross-site scripting (XSS) vulnerability in client_details.php in Proman Xpress 5.0.1 allows remote attackers to inject arbitrary web script or HTML via the cl_comments parameter.…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4265

Published Aug 13, 2012

SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote attackers to execute arbitrary SQL commands via the cid parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-2939

Published May 27, 2012

Multiple unrestricted file upload vulnerabilities in Travelon Express 6.2.2 allow remote authenticated users to execute arbitrary code by uploading a file with an executable exten…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-2938

Published May 27, 2012

Multiple cross-site scripting (XSS) vulnerabilities in Travelon Express 6.2.2 allow remote attackers to inject arbitrary web script or HTML via the holiday name field to (1) holid…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3968

Published Nov 18, 2009

Multiple SQL injection vulnerabilities in ITechBids 8.0 allow remote attackers to execute arbitrary SQL commands via the (1) user_id parameter to feedback.php, (2) cate_id paramet…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-4872

Published Nov 1, 2008

Cross-site scripting (XSS) vulnerability in bidhistory.php in iTechBids Gold 5.0 allows remote attackers to inject arbitrary web script or HTML via the item_id parameter. NOTE: t…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3237

Published Jul 21, 2008

Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to inject arbitrary web script or HTML via the productid parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3238

Published Jul 21, 2008

Multiple SQL injection vulnerabilities in ITechBids 7.0 Gold allow remote attackers to execute arbitrary SQL commands via (1) the seller_id parameter in sellers_othersitem.php, (2…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0776

Published Feb 14, 2008

SQL injection vulnerability in detail.php in iTechBids Gold 6.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0684

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to inject arbitrary web script or HTML via the CatID parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0685

Published Feb 12, 2008

SQL injection vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0692

Published Feb 12, 2008

SQL injection vulnerability in bidhistory.php in iTechBids 3 Gold and 5.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1