CVE-2005-1503 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in MidiCart PHP Shopping Cart allow remote attackers to execute arbitrary SQL commands via the (1) searchstring parameter to search_list.php the (2) maingroup or (3) secondgroup parameters to item_list.php or (4) code_no parameter to item_show.php.
Reference
http://marc.info/?l=bugtraq&m=111533057918993&w=2 http://secunia.com/advisories/15269 http://www.hackgen.org/advisories/hackgen-2005-004.txt http://www.osvdb.org/16175 http://www.osvdb.org/16176 http://www.osvdb.org/16177 http://www.securityfocus.com/bid/13512 http://www.securityfocus.com/bid/13513 http://www.securityfocus.com/bid/13514 http://www.securityfocus.com/bid/13515 https://exchange.xforce.ibmcloud.com/vulnerabilities/20428
Share on: