Skip to main content

Vendor archive

cfshopkart CVEs

Beta · best-effort

3 CVEs tagged to vendor cfshopkart0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2009-3309

Published Sep 23, 2009

SQL injection vulnerability in index.cfm in CF ShopKart 5.4 beta allows remote attackers to execute arbitrary SQL commands via the itemid parameter in a ViewDetails action, a diff…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-6321

Published Feb 27, 2009

CF Shopkart 5.2.2 stores cfshopkart52.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive information, such as usernames and…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-6320

Published Feb 27, 2009

SQL injection vulnerability in index.cfm in CF Shopkart 5.2.2 allows remote attackers to execute arbitrary SQL commands via the Category parameter in a ViewCategory action.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1