CyberSec.Space Logo
Back to CVE Browser

CVE-2007-4121

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1340%
EPSS Percentile24.12th
PublishedAug 1, 2007
Last ModifiedApr 23, 2026

Vulnerability Description

Multiple SQL injection vulnerabilities in admin.aspx in E-Commerce Scripts Shopping Cart Script, Multi-Vendor E-Shop Script, and Auction Script allow remote attackers to execute arbitrary SQL commands via the (1) EmailAdd (Username) and (2) Pass (password) parameters. NOTE: some of these details are obtained from third party information.

Affected Platforms (CPE)

πŸ“¦
E Commerce Solutions

Auction Script

All versions
πŸ“¦
E Commerce Solutions

Multi Vendor E Shop Script

All versions
πŸ“¦
E Commerce Solutions

Shopping Cart Script

All versions

References & Advisories

Related Vulnerabilities