Skip to main content

Vendor/product archive

kryptronic / clickcartpro CVEs

Beta · best-effort

2 CVEs tagged to kryptronic / clickcartpro0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2005-4293

Published Dec 16, 2005

Cross-site scripting (XSS) vulnerability in cp-app.cgi in ClickCartPro (CCP) 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the affl parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2310

Published Dec 31, 2002

ClickCartPro 4.0 stores the admin_user.db data file under the web document root with insufficient access control on servers other than Apache, which allows remote attackers to obt…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1