Описание
SQL injection vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the search field. NOTE: the vendor has disputed this issue, stating "if someone were to type in any sql injection code, that code would never be queried.
Ссылки
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:amazing_flash_commerce:afcommerce_shopping_cart:*:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.0159
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
** DISPUTED ** SQL injection vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the search field. NOTE: the vendor has disputed this issue, stating "if someone were to type in any sql injection code, that code would never be queried."
EPSS
Процентиль: 74%
0.0159
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other