CVE

Id
14939  
CVE No.
CVE-2005-3735  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in e-Quick Cart allow remote attackers to execute arbitrary SQL commands via the (1) productid parameter in shopaddtocart.asp, (2) strpemail parameter in shopprojectlogin.asp, and (3) id parameter in shoptellafriend.asp.  
Phase
Assigned (20051121)  
Votes
None (candidate not yet proposed)  
Comments