CVE-2005-4614 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in digiSHOP 3.1.17 and earlier allow remote attackers to execute arbitrary SQL commands or obtain the full installation path via (1) the c parameter in cart.php and (2) unspecified search module parameters.
Reference
http://pridels0.blogspot.com/2005/11/digishop-3x-sql-injection-vuln.html http://www.osvdb.org/21302 http://www.osvdb.org/21303 http://www.vupen.com/english/advisories/2005/2563 https://exchange.xforce.ibmcloud.com/vulnerabilities/23357 https://exchange.xforce.ibmcloud.com/vulnerabilities/23358
Share on: