Описание
SQL injection vulnerability in lshop.cgi in Cosmoshop 8.11.106 and earlier allows remote attackers to execute arbitrary SQL commands via the artnum parameter.
SQL injection vulnerability in lshop.cgi in Cosmoshop 8.11.106 and earlier allows remote attackers to execute arbitrary SQL commands via the artnum parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-2474
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26534
- http://secunia.com/advisories/20177
- http://securityreason.com/securityalert/919
- http://www.osvdb.org/25649
- http://www.securityfocus.com/archive/1/434368/100/0/threaded
- http://www.securityfocus.com/bid/18024
EPSS
Процентиль: 74%
0.00799
Низкий
CVE ID
Связанные уязвимости
nvd
больше 19 лет назад
SQL injection vulnerability in lshop.cgi in Cosmoshop 8.11.106 and earlier allows remote attackers to execute arbitrary SQL commands via the artnum parameter.
EPSS
Процентиль: 74%
0.00799
Низкий