VendorsCraig Dansiedansie_shopping_cart3.0.4
Vulnerabilities

Craig Dansie Dansie Shopping Cart 3.0.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2000-0253
The dansie shopping cart application cart.pl allows remote attackers to modify sensitive purchase information via hidden form fields.
Published 2001-01-22 · Modified
10.0EPSS 0.025
CVE-2000-0254
The dansie shopping cart application cart.pl allows remote attackers to obtain the shopping cart database and configuration information via a URL that references either the env, db, or vars form variables.
Published 2001-01-22 · Modified
5.01 PoCEPSS 0.060
CVE-2000-0252
The dansie shopping cart application cart.pl allows remote attackers to execute commands via a shell metacharacters in a form variable.
Published 2001-01-22 · Modified
5.0EPSS 0.022