Vulnerabilities > Quadcomm > Q Shop > 3.5

DATE CVE VULNERABILITY TITLE RISK
2006-09-19 CVE-2006-4852 SQL Injection vulnerability in Quadcomm Q-Shop 3.5
SQL injection vulnerability in browse.asp in QuadComm Q-Shop 3.5 allows remote attackers to execute arbitrary SQL commands via the OrderBy parameter.
network
low complexity
quadcomm
7.5