Vulnerabilities > CGI Rescue > Shopping Basket Professional

DATE CVE VULNERABILITY TITLE RISK
2007-09-04 CVE-2007-4655 Path Traversal vulnerability in Cgi-Rescue Shopping Basket Professional
Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote attackers to list arbitrary directories, and possibly read arbitrary files, via directory traversal sequences in unspecified parameters to (1) list.cgi or (2) list2.cgi.
network
low complexity
cgi-rescue CWE-22
5.0
2007-01-30 CVE-2007-0565 Remote Command Execution vulnerability in CGI Rescue Shopping Cart Professional
CGI-Rescue Shopping Basket Professional 7.50 and earlier allows remote attackers to inject arbitrary operating system commands via unspecified vectors.
network
low complexity
cgi-rescue
7.5