CVE

Id
4831  
CVE No.
CVE-2002-0439  
Status
Candidate  
Description
Cross-site scripting vulnerability in CaupoShop 1.30a and earlier, and possibly CaupoShopPro, allows remote attackers to execute arbitrary Javascript and steal credit card numbers or delete items by injecting the script into new customer information fields such as the message field.  
Phase
Proposed (20020611)  
Votes
ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | REVIEWING(1) Green  
Comments