Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in FishCart 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) cartid parameter to upstnt.php or (2) psku parameter to display.php. NOTE: the vendor disputes this report, saying that they are forced SQL errors. The original researcher is known to be unreliable
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FishNet FishCart多个跨站脚本攻击和SQL注入漏洞
Vulnerability Description
FishCart 3.1中存在多个SQL注入漏洞,远程攻击者可通过(1)传到upstnt.php的cartid参数和(2)传给display.php的psku参数执行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A