CVE-2007-2959 Information

Description

SQL injection vulnerability in manufacturer.php in cpCommerce before 1.1.0 allows remote attackers to execute arbitrary SQL commands via the id_manufacturer parameter.

Reference

http://osvdb.org/38042 http://securityreason.com/securityalert/2747 http://www.securityfocus.com/archive/1/469910/100/0/threaded http://www.securityfocus.com/bid/24223 https://exchange.xforce.ibmcloud.com/vulnerabilities/34573

Share on: