CVE-2005-4677

SQL injection vulnerability in additional_images.php (aka the Additional Images module) before 1.14 in osCommerce allows remote attackers to execute arbitrary SQL commands via the products_id parameter to product_info.php.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oscommerce:oscommerce:1.1:*:*:*:*:*:*:*
cpe:2.3:a:oscommerce:oscommerce:1.11:*:*:*:*:*:*:*
cpe:2.3:a:oscommerce:oscommerce:1.12:*:*:*:*:*:*:*
cpe:2.3:a:oscommerce:oscommerce:1.13:*:*:*:*:*:*:*

Information

Published : 2005-12-30 21:00

Updated : 2017-07-19 18:29


NVD link : CVE-2005-4677

Mitre link : CVE-2005-4677


JSON object : View

Advertisement

dedicated server usa

Products Affected

oscommerce

  • oscommerce