Vulnerabilities > CVE-2006-2124 - Unspecified vulnerability in Turnkey Solutions Sunshop Shopping Cart 3.0/3.5

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
turnkey-solutions
exploit available

Summary

Multiple cross-site scripting (XSS) vulnerabilities in SunShop 3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) prevaction, (2) previd, (3) prevstart, (4) itemid, (5) id, and (6) action parameters in index.php.

Exploit-Db

descriptionSunShop Shopping Cart 3.5 Multiple Cross-Site Scripting Vulnerabilities. CVE-2006-2124. Webapps exploit for php platform
idEDB-ID:27792
last seen2016-02-03
modified2006-05-01
published2006-05-01
reporterr0t
sourcehttps://www.exploit-db.com/download/27792/
titleSunShop Shopping Cart 3.5 - Multiple Cross-Site Scripting Vulnerabilities