CVE

Id
10838  
CVE No.
CVE-2004-2412  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via the catalogid parameter in (1) shopreviewlist.asp and (2) shopreviewadd.asp.  
Phase
Assigned (20050818)  
Votes
None (candidate not yet proposed)  
Comments