E-topbiz
12 CVEs tracked since 2008. Since Jun 2008, none of them reached CISA KEV.
E-topbiz CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2008-06 | 2 | 0 |
| 2008-07 | 2 | 0 |
| 2008-08 | 1 | 0 |
| 2008-09 | null or fewer | |
| 2008-10 | null or fewer | |
| 2008-11 | null or fewer | |
| 2008-12 | 4 | 0 |
| 2009-01 | null or fewer | |
| 2009-02 | 3 | 0 |
Products
The products that kept showing up in E-topbiz's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 12 most recently published vulnerabilities affecting E-topbiz.
- CVE-2008-6307E-topbiz Link Back Checker 1 allows remote attackers to bypass authentication and gain administrative access by setting the auth cookie to "admin."7.5
- CVE-2008-6261SQL injection vulnerability in view.php in E-topbiz AdManager 4 allows remote attackers to execute arbitrary SQL commands via the group parameter.7.5
- CVE-2008-6264SQL injection vulnerability in admin/admin.php in E-topbiz Slide Popups 1.0 allows remote attackers to execute arbitrary SQL commands via the password parameter.7.5
- CVE-2008-5803SQL injection vulnerability in admin/login.php in E-topbiz Online Store 1.0 allows remote attackers to execute arbitrary SQL commands via the user parameter (aka username field). NOTE: some of the...7.5
- CVE-2008-5804SQL injection vulnerability in admin/admin_catalog.php in e-topbiz Number Links 1 Php Script allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit action.7.5
- CVE-2008-5802SQL injection vulnerability in index.php in E-topbiz Online Store 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.7.5
- CVE-2008-5488SQL injection vulnerability in admin.php in E-topbiz Domain Shop 2 allows remote attackers to execute arbitrary SQL commands via the passfromform parameter.7.5
- CVE-2008-3490SQL injection vulnerability in members/mail.php in E-topbiz Online Dating 3 1.0 allows remote authenticated users to execute arbitrary SQL commands via the mail_id parameter in a veiw action.6.5
- CVE-2008-3346SQL injection vulnerability in product_detail.php in ShopCart DX allows remote attackers to execute arbitrary SQL commands via the pid parameter.7.5
- CVE-2008-3204SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter.7.5
- CVE-2008-2869SQL injection vulnerability in out.php in E-topbiz Link ADS 1 allows remote attackers to execute arbitrary SQL commands via the linkid parameter.7.5
- CVE-2008-2867SQL injection vulnerability in adclick.php in E-topbiz Viral DX 1 2.07 allows remote attackers to execute arbitrary SQL commands via the bannerid parameter.7.5
The record
- Peak rank
- #19 in Dec 2008
- Busiest month shown
- Dec 2008, 4 CVEs
- Months with a KEV entry
- 0 since Jun 2008
- Monthly snapshots
- 5 since 2008