Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2007-2997

Disclosure Date: June 04, 2007 (last updated November 08, 2023)
Multiple SQL injection vulnerabilities in cgi-bin/reorder2.asp in SalesCart Shopping Cart allow remote attackers to execute arbitrary SQL commands via the password field and other unspecified vectors. NOTE: the vendor disputes this issue, stating "We were able to reproduce this sql injection on an old out-of-date demo on the website but not on the released product.
0
Attacker Value
Unknown

CVE-2000-0102

Disclosure Date: February 01, 2000 (last updated February 22, 2025)
The SalesCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
0