RSS   Vulnerabilities for 'Valdersoft shopping cart'   RSS

2006-01-06
 
CVE-2006-0099

 

 
PHP remote file include vulnerability in (1) include/templates/categories/default.php and (2) certain other include/templates/categories/ PHP scripts in Valdersoft Shopping Cart 3.0 allows remote attackers to execute arbitrary code via a URL in the catalogDocumentRoot parameter.

 
2005-03-28
 
CVE-2005-0908

 

 
Multiple cross-site scripting (XSS) vulnerabilities in Valdersoft Shopping Cart 3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter to index.php or (2) the searchTopCategoryID parameter to search_result.php.

 

 >>> Vendor: Valdersoft 2 Products
Shopping cart
Valdersoft shopping cart


Copyright 2024, cxsecurity.com

 

Back to Top