CVE-2009-3336

Phpprobid Php Pro Bid - SQL Injection

Title source: rule

Description

SQL injection vulnerability in auction_details.php in PHP Pro Bid allows remote attackers to execute arbitrary SQL commands via the auction_id parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by NoGe · perlwebappsphp
https://www.exploit-db.com/exploits/9665

Scores

EPSS 0.0024
EPSS Percentile 47.3%

Classification

CWE
CWE-89
Status draft

Affected Products (1)

phpprobid/php_pro_bid

Timeline

Published Sep 24, 2009
Tracked Since Feb 18, 2026