Searching shopping software vulnerabilities


An incorrect configuration of the Order Form 1.


An incorrect configuration of the Order Form 1.0 shopping cart CGI program could disclose private information.


An incorrect configuration of the EZMall 2000 s


An incorrect configuration of the EZMall 2000 shopping cart CGI program "mall2000.cgi" could disclose private information.


The Make-a-Store OrderPage shopping cart applic


The Make-a-Store OrderPage shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The SalesCart shopping cart application allows


The SalesCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The SmartCart shopping cart application allows


The SmartCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The Shoptron shopping cart application allows r


The Shoptron shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The EasyCart shopping cart application allows r


The EasyCart shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The Intellivend shopping cart application allow


The Intellivend shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The WebSiteTool shopping cart application allow


The WebSiteTool shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The shopping cart application provided with Fil


The shopping cart application provided with Filemaker allows remote users to modify sensitive purchase information via hidden form fields.


The Check It Out shopping cart application allo


The Check It Out shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The @Retail shopping cart application allows re


The @Retail shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The Cart32 shopping cart application allows rem


The Cart32 shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


The CartIt shopping cart application allows rem


The CartIt shopping cart application allows remote users to modify sensitive purchase information via hidden form fields.


Buffer overflows in redirect.exe and changepw.e


Buffer overflows in redirect.exe and changepw.exe in PDGSoft shopping cart allow remote attackers to execute arbitrary commands via a long query string.


Directory traversal vulnerability in Quikstore


Directory traversal vulnerability in Quikstore shopping cart program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the "page" parameter.


quikstore.cgi in Quikstore Shopping Cart allows


quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request.


Privacy leak in Dansie Shopping Cart 3.04, and


Privacy leak in Dansie Shopping Cart 3.04, and probably earlier versions, sends sensitive information such as user credentials to an e-mail address controlled by the product developers.


shopplus.cgi in ShopPlus shopping cart allows r


shopplus.cgi in ShopPlus shopping cart allows remote attackers to execute arbitrary commands via shell metacharacters in the "file" parameter.


Multiple SQL injection vulnerabilities in MidiC


Multiple SQL injection vulnerabilities in MidiCart ASP Shopping Cart and ASP Plus Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) id2006quant parameter to (a) item_show.asp, or the (2) maingroup or (3) secondgroup parameter to (b) item_list.asp. NOTE: the code_no parameter to Item_Show.asp is covered by CVE-2005-2601.


Software vulnerabilities results 1 to 20 of 97     
Page: 12345