Skip to main content

Vendor/product archive

maianscriptworld / maian_cart CVEs

Beta · best-effort

3 CVEs tagged to maianscriptworld / maian_cart1 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-32172

Published Oct 7, 2021

Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2212

Published May 14, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Maian Cart 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) msg_adminheader, (2) msg_adminheade…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1075

Published Feb 29, 2008

Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search comma…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1