Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2008-3768
Disclosure Date: August 22, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in class.ajax.php in Turnkey Web Tools SunShop Shopping Cart before 4.1.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in an edit_registry action to index.php, (2) a vector involving the check_email function, and other vectors.
0
Attacker Value
Unknown
CVE-2007-4597
Disclosure Date: August 30, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to execute arbitrary SQL commands via the s[cid] parameter in a search_list action, a different vector than CVE-2007-2549.
0
Attacker Value
Unknown
CVE-2007-2548
Disclosure Date: May 09, 2007 (last updated October 04, 2023)
Unspecified vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 has unknown impact and an l remote attack vector, related to "Cookie Manipulation."
0
Attacker Value
Unknown
CVE-2007-2547
Disclosure Date: May 09, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attackers to inject arbitrary web script or HTML via the l parameter.
0
Attacker Value
Unknown
CVE-2007-2549
Disclosure Date: May 09, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 allows remote attackers to execute arbitrary SQL commands via the (1) c or (2) quantity parameter.
0