CVE-2007-5261 Information

Description

Multiple SQL injection vulnerabilities in MultiCart 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) catid parameter to categorydetail.php and the (2) ddlCategory parameter to search.php.

Reference

http://www.securityfocus.com/bid/25895 https://exchange.xforce.ibmcloud.com/vulnerabilities/36927 https://www.exploit-db.com/exploits/4480

Share on: