CVE Certified

(inurl:/shop.cgi/page=) | (inurl:/

prev next

Google search: (inurl:/shop.cgi/page=) | (inurl:/

Hits: 4174

Submited: 2004-11-07

This is a "double dork" finds two different shopping carts, both vulnerable1) Cyber-Village Online Consulting Shopping CartCyber-Village's script is known to not sanitize the user input properly which leads to code execution problems.2) Hassan Consulting's Shopping CartFor Hassan's cart it is reported that a remote user can request the 'shop.cfg' and that the script allows directory traversal.