Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
peel vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-1496
Multiple SQL injection vulnerabilities in PEEL, possibly 3.x and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) email parameter to (a) membre.php, and the (2) timestamp parameter to (b) the details action in achat/historique_commandes.php and (c)...
Peel Peel 1.0b
Peel Peel 2.6
Peel Peel 2.7
1 EDB exploit available
NA
CVE-2008-1506
PEEL, possibly 3.x and earlier, allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function....
Peel Peel 1.0b
Peel Peel 2.6
Peel Peel 2.7
Peel Peel
1 EDB exploit available
NA
CVE-2008-1507
PEEL, possibly 3.x and earlier, has (1) a default info@peel.fr account with password admin, and (2) a default contact@peel.fr account with password cinema, which allows remote attackers to gain administrative access....
Peel Peel
Peel Peel 1.0b
Peel Peel 2.6
Peel Peel 2.7
1 EDB exploit available
NA
CVE-2012-5227
SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbitrary SQL commands via the id parameter....
Peel Peel Shopping 2.8
Peel Peel Shopping 2.9
1 EDB exploit available
NA
CVE-2012-5226
Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HTML via the (1) motclef parameter to achat/recherche.php or (2) PATH_INFO to index.php....
Peel Peel Shopping 2.8
Peel Peel Shopping 2.9
1 EDB exploit available
NA
CVE-2008-1495
Unrestricted file upload vulnerability in administrer/produits.php in PEEL, possibly 3.x and earlier, allows remote authenticated administrators to upload and execute arbitrary PHP files via a modified content type in an ajout action, as demonstrated by (1) image/gif and (2)...
Peel Peel 2.6
Peel Peel 2.7
Peel Peel 1.0b
1 EDB exploit available
NA
CVE-2005-3572
SQL injection vulnerability in index.php in Peel 2.6 through 2.7 allows remote attackers to execute arbitrary SQL commands via the rubid parameter....
Peel Peel 2.6
Peel Peel 2.7
5.4
CVSSv3
CVE-2021-27190
A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 and 9.4.0, which are publicly available. The user supplied input containing polyglot payload is echoed back in javascript code in HTML response. This allows an attacker to input malicious...
Peel Peel Shopping 9.3.0
Peel Peel Shopping 9.4.0
4 Github repositories available
8.8
CVSSv3
CVE-2018-20848
Advisto PEEL SHOPPING 9.0.0 has CSRF via en/achat/caddie_ajout.php and en/achat/caddie_affichage.php, as demonstrated by an XSS payload in the couleurId[0] parameter to the latter....
Peel Peel Shopping 9.0.0
NA
CVE-2002-2134
haut.php in PEEL 1.0b allows remote attackers to execute arbitrary PHP code by modifying the dirroot parameter to reference a URL on a remote web server that contains the code in a lang.php file....
Peel Peel 1.0b
1 EDB exploit available
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2021-44228
CVE-2021-41690
CVE-2021-21551
firewall
dos
CVE-2022-31229
CVE-2022-30562
CVE-2022-30563
camera
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »