shopping software vulnerabilities
vulnerabilities.aspcode.net
Searching shopping software vulnerabilities
An incorrect configuration of the Order Form 1.
configuration
|
information
|
incorrect
|
disclose
|
shopping
|
program
|
private
|
could
|
Order
|
Form
|
cart
|
CGI
|
An incorrect configuration of the Order Form 1.0 shopping cart CGI program could disclose private information.
An incorrect configuration of the EZMall 2000 s
configuration
|
incorrect
|
EZMall
|
An incorrect configuration of the EZMall 2000 shopping cart CGI program "mall2000.cgi" could disclose private information.
The Make-a-Store OrderPage shopping cart applic
Make-a-Store
|
information
|
application
|
OrderPage
|
sensitive
|
purchase
|
shopping
|
modify
|
allows
|
fields
|
hidden
|
remote
|
users
|
cart
|
form
|
via
|
The Make-a-Store OrderPage shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The SalesCart shopping cart application allows
application
|
information
|
SalesCart
|
sensitive
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The SalesCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The SmartCart shopping cart application allows
application
|
information
|
SmartCart
|
sensitive
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The SmartCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The Shoptron shopping cart application allows r
application
|
information
|
sensitive
|
Shoptron
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The EasyCart shopping cart application allows r
application
|
information
|
sensitive
|
EasyCart
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The Intellivend shopping cart application allow
application
|
information
|
Intellivend
|
sensitive
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The WebSiteTool shopping cart application allow
application
|
information
|
WebSiteTool
|
sensitive
|
purchase
|
shopping
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The shopping cart application provided with Fil
application
|
information
|
Filemaker
|
sensitive
|
purchase
|
shopping
|
provided
|
modify
|
allows
|
fields
|
hidden
|
remote
|
users
|
cart
|
form
|
via
|
The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.
The Check It Out shopping cart application allo
information
|
application
|
sensitive
|
purchase
|
shopping
|
modify
|
remote
|
hidden
|
fields
|
allows
|
Check
|
users
|
form
|
cart
|
via
|
Out
|
The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The @Retail shopping cart application allows re
application
|
information
|
sensitive
|
purchase
|
shopping
|
@Retail
|
fields
|
hidden
|
remote
|
allows
|
modify
|
users
|
form
|
cart
|
via
|
The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The Cart32 shopping cart application allows rem
application
|
information
|
sensitive
|
purchase
|
shopping
|
hidden
|
fields
|
modify
|
allows
|
Cart32
|
remote
|
users
|
form
|
cart
|
via
|
The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
The CartIt shopping cart application allows rem
application
|
information
|
sensitive
|
purchase
|
shopping
|
hidden
|
fields
|
modify
|
allows
|
CartIt
|
remote
|
users
|
form
|
cart
|
via
|
The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.
Buffer overflows in redirect.exe and changepw.e
redirectexe
|
changepwexe
|
arbitrary
|
attackers
|
overflows
|
commands
|
shopping
|
execute
|
PDGSoft
|
string
|
Buffer
|
remote
|
query
|
allow
|
long
|
cart
|
via
|
Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary commands via a long query string.
Directory traversal vulnerability in Quikstore
vulnerability
|
arbitrary
|
attackers
|
Quikstore
|
Directory
|
traversal
|
shopping
|
program
|
remote
|
allows
|
files
|
cart
|
read
|
via
|
Directory traversal vulnerability in Quikstore shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "page" parameter.
quikstore.cgi in Quikstore Shopping Cart allows
metacharacters
|
quikstorecgi
|
attackers
|
arbitrary
|
Quikstore
|
Shopping
|
commands
|
request
|
portion
|
execute
|
allows
|
remote
|
shell
|
Cart
|
HTTP
|
GET
|
via
|
URL
|
quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request.
Privacy leak in Dansie Shopping Cart 3.04, and
Shopping
|
Privacy
|
Dansie
|
Cart
|
leak
|
Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers.
shopplus.cgi in ShopPlus shopping cart allows r
metacharacters
|
shoppluscgi
|
attackers
|
arbitrary
|
parameter
|
ShopPlus
|
shopping
|
commands
|
execute
|
allows
|
"file"
|
remote
|
shell
|
cart
|
via
|
shopplus.cgi in ShopPlus shopping cart allows remote attackers to execute arbitrary commands via shell metacharacters in the "file" parameter.
Multiple SQL injection vulnerabilities in MidiC
vulnerabilities
|
arbitrary
|
attackers
|
injection
|
Shopping
|
Multiple
|
MidiCart
|
commands
|
execute
|
remote
|
allow
|
Cart
|
Plus
|
via
|
SQL
|
ASP
|
Multiple SQL injection vulnerabilities in MidiCart ASP Shopping Cart and ASP Plus Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) id2006quant parameter to (a) item_show.asp, or the (2) maingroup or (3) secondgroup parameter to (b) item_list.asp. NOTE: the code_no parameter to Item_Show.asp is covered by CVE-2005-2601.
Software vulnerabilities results 1 to 20 of 97
Page:
1
2
3
4
5
►