This page aggregates publicly disclosed CVE and security risk information related to randshop, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2006-3537 | PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375. | [email protected] | 7.5 | 1.96% | 2006-07-12 | 2026-04-16 |
| CVE-2006-3375 | PHP remote file inclusion vulnerability in includes/header.inc.php in Randshop 1.1.1 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter. | [email protected] | 7.5 | 2.76% | 2006-07-06 | 2026-04-16 |
| CVE-2006-3374 | PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter. | [email protected] | 7.5 | 2.56% | 2006-07-06 | 2026-04-16 |
| CVE-2005-3924 | SQL injection vulnerability in themes/kategorie/index.php in Randshop allows remote attackers to execute arbitrary SQL commands via the (1) kategorieid and (2) katid parameters. | [email protected] | 7.5 | 1.32% | 2005-11-30 | 2026-04-16 |