Vulnerabilities > CVE-2002-0553 - Unspecified vulnerability in Turnkey Solutions Sunshop Shopping Cart

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
turnkey-solutions
exploit available

Summary

Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain administrative privileges to SunShop by injecting the script into fields during new customer registration.

Exploit-Db

descriptionSunShop Shopping Cart 1.5/2.x User-Embedded Scripting Vulnerability. CVE-2002-0553. Webapps exploit for php platform
idEDB-ID:21377
last seen2016-02-02
modified2002-04-13
published2002-04-13
reporterppp-design
sourcehttps://www.exploit-db.com/download/21377/
titleSunShop Shopping Cart 1.5/2.x User-Embedded Scripting Vulnerability