RSS   Vulnerabilities for 'Iuser ecommerce'   RSS

2006-02-24
 
CVE-2006-0874

CWE-noinfo
 

 
Multiple unspecified vulnerabilities in Intensive Point iUser Ecommerce before 2.2 have unspecified vectors and impact, as addressed by "Urgent secure fixes". NOTE: this might be a duplicate of CVE-2006-0854, but the vendor announcement for this issue (from January 8, 2005) is too vague to be sure, and CVE-2006-0854 does not provide version information.

 
2006-02-22
 
CVE-2006-0854

CWE-94
 

 
PHP remote file inclusion vulnerability in common.php in Intensive Point iUser Ecommerce allows remote attackers to include arbitrary files via a URL in the include_path variable, which is not initialized before being used.

 


Copyright 2024, cxsecurity.com

 

Back to Top