CVE-2004-0300
Published Nov 23, 2004SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorized access via (1) the cat parameter in shop.php, (2) the id…
Vendor/product archive
2 CVEs tagged to ecommerce_corporation_online / store_kit — 1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
SQL injection vulnerability in Online Store Kit 3.0 allows remote attackers to inject arbitrary SQL and gain unauthorized access via (1) the cat parameter in shop.php, (2) the id…
Cross-site scripting (XSS) vulnerability in more.php for Online Store Kit 3.0 allows remote attackers to inject arbitrary HTML via the id parameter.