Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple SQL injection vulnerabilities in CartWIZ allow remote attackers to modify SQL statements via the (1) idProduct parameter to tellAFriend.asp, (2) sortType parameter to viewSupportTickets.asp, or the id parameter to (3) updateCreditCards.asp or (4) deleteCreditCards.asp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
bitland CartWIZ 多个 SQL注入漏洞
Vulnerability Description
CartWIZ是一款功能强大的网络购物软件组件。 CartWIZ中存在多个SQL注入漏洞。 远程攻击者可通过tellAFriend.asp的idProduct参数、viewSupportTickets.asp的sortType参数、updateCreditCards.asp的id参数、或deleteCreditCards.asp,修改SQL语句。
CVSS Information
N/A
Vulnerability Type
N/A