Vulnerabilities > CVE-2005-1594 - Unspecified vulnerability in Codethat Shoppingcart 1.3.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | CodeThatShoppingCart 1.3.1 catalog.php id Parameter SQL Injection. CVE-2005-1594. Webapps exploit for php platform |
id | EDB-ID:25638 |
last seen | 2016-02-03 |
modified | 2005-05-09 |
published | 2005-05-09 |
reporter | Lostmon |
source | https://www.exploit-db.com/download/25638/ |
title | CodeThatShoppingCart 1.3.1 catalog.php id Parameter SQL Injection |
Nessus
NASL family | CGI abuses |
NASL id | CODETHATSHOPPINGCART_SQL.NASL |
description | The remote host is running the CodeThat.com ShoppingCart, a shopping cart program written in PHP. The remote version of this software fails to sanitize input to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 18255 |
published | 2005-05-14 |
reporter | Copyright (C) 2005-2018 Josh Zlatin-Amishav |
source | https://www.tenable.com/plugins/nessus/18255 |
title | CodeThatShoppingCart Multiple Remote Vulnerabilities (SQLi, XSS, ID) |
code |
|
References
- http://lostmon.blogspot.com/2005/05/codethat-shoppingcart-critical.html
- http://lostmon.blogspot.com/2005/05/codethat-shoppingcart-critical.html
- http://secunia.com/advisories/15251
- http://secunia.com/advisories/15251
- http://securitytracker.com/id?1013924
- http://securitytracker.com/id?1013924
- http://www.osvdb.org/16156
- http://www.osvdb.org/16156
- http://www.securityfocus.com/bid/13560
- http://www.securityfocus.com/bid/13560