Skip to main content

Vendor/product archive

reality66 / cart66_lite CVEs

Beta · best-effort

3 CVEs tagged to reality66 / cart66_lite0 Critical, 0 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2014-9461

Published Jan 2, 2015

Directory traversal vulnerability in models/Cart66.php in the Cart66 Lite plugin before 1.5.4 for WordPress allows remote authenticated users to read arbitrary files via a .. (dot…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-9442

Published Jan 2, 2015

SQL injection vulnerability in models/Cart66Ajax.php in the Cart66 Lite plugin before 1.5.4 for WordPress allows remote authenticated users to execute arbitrary SQL commands via t…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-9305

Published Dec 8, 2014

SQL injection vulnerability in the shortcodeProductsTable function in models/Cart66Ajax.php in the Cart66 Lite plugin before 1.5.2 for WordPress allows remote authenticated users…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1