Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user_id parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ViArt Shop 'cart_save.php'信息泄露漏洞
Vulnerability Description
ViArt Shop(又称Shopping Cart)3.5版本允许远程攻击者借助对cart_save.php中的shopping cart进行的未经过鉴定的添加和保存操作,获得敏感信息。添加和保存操作会在出错信息中显示SQL制表名。
CVSS Information
N/A
Vulnerability Type
N/A