about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , SunShop Shopping Cart User-Embedded Scripting Vulnerability


Title SunShop Shopping Cart User-Embedded Scripting Vulnerability
Published 2002-04-13-12:00AM
Updated 2002-04-15-07:35PM
Class Input Validation Error
CVE   CVE-2002-0553
Remote  Yes
Local  No
Credit  Discovery of this vulnerability is credited to ppp-design <security@ppp-design.de>.
Vulnerable  TurnkeyWebTools SunShop Shopping Cart 2.5
TurnkeyWebTools SunShop Shopping Cart 2.4
TurnkeyWebTools SunShop Shopping Cart 2.2
TurnkeyWebTools SunShop Shopping Cart 2.1
TurnkeyWebTools SunShop Shopping Cart 2.0
TurnkeyWebTools SunShop Shopping Cart 1.5
Not Vulnerable  TurnkeyWebTools SunShop Shopping Cart 2.6
Code   The following proof-of-concept was provided:

Enter the following name when registering as a new customer:

blackhat<script>alert('ouch')</script>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 21:50:24 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Animals se KHAB Free xxx w shakila ph apple osx un-googler Filam photos ira sexy anime sexi larki www.sexyi redhat 9.0 efsha.co.u users www.opdoor sxs My Hot Ass nudeashwar nude malli Crack Data Www.porn m (meta) com_phpsho 200 /compo jaiber geirl sex Apache Mod com_phpsho 200 /compo akobook 2. pasoma blog.mingr Dog sex mo tose www. xxx deny Nangipreit news for c search/exp +Netsaint+ www.sex.c www.india 200+%252Fa 200 /compo Gaya sex p news for c DOCSIS sleeping f SIMBU SEX www.weishu