CyberSec.Space Logo
CVEブラウザに戻る

CVE-2007-4121

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1340%
EPSS Percentile24.12th
Published2007年8月1日
Last Modified2026年4月23日

Vulnerability Description

Multiple SQL injection vulnerabilities in admin.aspx in E-Commerce Scripts Shopping Cart Script, Multi-Vendor E-Shop Script, and Auction Script allow remote attackers to execute arbitrary SQL commands via the (1) EmailAdd (Username) and (2) Pass (password) parameters. NOTE: some of these details are obtained from third party information.

Affected Platforms (CPE)

📦
E Commerce Solutions

Auction Script

All versions
📦
E Commerce Solutions

Multi Vendor E Shop Script

All versions
📦
E Commerce Solutions

Shopping Cart Script

All versions

References & Advisories

関連する脆弱性情報