Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fw85-q2mv-g343

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_id with a "'" (single quote), which reveals the path in an error message, possibly due to an SQL injection vulnerability.

shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_id with a "'" (single quote), which reveals the path in an error message, possibly due to an SQL injection vulnerability.

EPSS

Процентиль: 60%
0.00401
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_id with a "'" (single quote), which reveals the path in an error message, possibly due to an SQL injection vulnerability.

EPSS

Процентиль: 60%
0.00401
Низкий