about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , EC-CUBE SQL Injection and Cross-Site Scripting Vulnerabilities


Title EC-CUBE SQL Injection and Cross-Site Scripting Vulnerabilities
Published 2008-10-01-12:00AM
Updated 2008-10-02-12:08AM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Yuya Yoshida, Naruhisa Tadokoro and Masako Oono
Vulnerable  ECCUBE ECCUBE Community Edition NightlyBuild r17623
ECCUBE ECCUBE Community Edition NightlyBuild r17336
ECCUBE ECCUBE Community Edition NightlyBuild r17319
ECCUBE ECCUBE Community Edition 1.3.4
ECCUBE ECCUBE 1.4.6
ECCUBE ECCUBE 1.0
ECCUBE ECCUBE 2.3.0rc1
ECCUBE ECCUBE 2.2.0beta
ECCUBE ECCUBE 2.1.2a
ECCUBE ECCUBE 2.1.1beta
ECCUBE ECCUBE 1.5.0beta
ECCUBE ECCUBE 1.0.1a beta
Not Vulnerable  EC-CUBE EC-CUBE Community Edition 1.3.5
EC-CUBE EC-CUBE 2.3
EC-CUBE EC-CUBE 1.4.7
Code  An attacker can exploit these issues through a browser. To exploit a cross-site scripting issue, the attacker must entice an unsuspecting user to follow a malicious URI.
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 22:08:33 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
spybot cat /home/ Www.sexer VIDEOS POR Indian sex news for c saxyaishwa Www.Free s eminen angelina j Slackware Sameera nu Tamilgirl. SOUTH+INDI www.asian4 news for c Video sex Sexledy tamilsexgi /search/ex Toonsex www.668tt. www.ssexco www 89six www.needur red t www.huangs Invision P news for c Free hardc Vediomariy malayalam+ sexy pik www.ssexco 200 /compo HOW+TEST+E severina v sexsenew f Mayur@figh Sex School gbook.php2 news for c reversi view.cgi Www.malaya Punjabisex php-nuke 2 username+c Baukasten indiansexv