CVE-2000-1001 Information

Description

add_2_basket.asp in Element InstantShop allows remote attackers to modify price information via the \price\ hidden form variable.

Reference

http://marc.info/?l=bugtraq&m=97240616129614&w=2 http://www.osvdb.org/6487 https://exchange.xforce.ibmcloud.com/vulnerabilities/5402

Share on: