oneworldstore software vulnerabilities
vulnerabilities.aspcode.net
Searching oneworldstore software vulnerabilities
Multiple SQL injection vulnerabilities in OneWo
vulnerabilities
|
OneWorldStore
|
idProduct
|
attackers
|
arbitrary
|
parameter
|
injection
|
Multiple
|
commands
|
execute
|
remote
|
allow
|
SQL
|
via
|
Multiple SQL injection vulnerabilities in OneWorldStore allow remote attackers to execute arbitrary SQL commands via the idProduct parameter to (1) owAddItem.asp or (2) owProductDetail.asp, (3) idCategory parameter to owListProduct.asp, or (4) bSpecials parameter to owListProduct.asp.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in OneWorldStore allow remote attackers to inject arbitrary web script or HTML via the (1) sEmail parameter to owContactUs.asp, (2) bSub parameter to owListProduct.asp, or the (3) Name, (4) Email, or (5) Comment fields in owProductDetail.asp.
owOfflineCC.asp in OneWorldStore allows remote
owOfflineCCasp
|
OneWorldStore
|
information
|
modifying
|
sensitive
|
parameter
|
attackers
|
idOrder
|
allows
|
remote
|
obtain
|
owOfflineCC.asp in OneWorldStore allows remote attackers to obtain sensitive information by modifying the idOrder parameter.
Software vulnerabilities results 1 to 4 of 4
Page:
1