OpenCart是一个基于PHP的开放源码的的网上购物车系统。 OpenCart 1.1.8版本的index.php中存在目录遍历漏洞。远程攻击者读可以借助路径参数中的一个..(参数中包含'..'),读取任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-6806 | 7-Shop 'imageupload.php'任意文件上传漏洞 | |
| CVE-2009-1627 | SDP Downloader ASX文件处理堆溢出漏洞 | |
| CVE-2009-1626 | EZ-Blog 'public/specific.php' SQL注入漏洞 | |
| CVE-2009-1625 | Thickbox Gallery 'index.php' 本地文件包含漏洞 | |
| CVE-2009-1624 | Dew-Code Dew-NewPHPLinks 'index.php' 本地文件目录遍历漏洞 | |
| CVE-2009-1623 | Dew-Code Dew-NewPHPLinks 'index.php' 本地文件包含和跨站脚本攻击漏洞 | |
| CVE-2009-1622 | ECShop 'user.php' SQL注入漏洞 | |
| CVE-2009-1620 | MataChat 'input.php' 多个跨站脚本攻击漏洞 | |
| CVE-2009-1619 | Teraway FileStream twFSadmin cookieCookie认证绕过漏洞 | |
| CVE-2009-1618 | Teraway LinkTracker TWLHadmin cookie Cookie认证绕过漏洞 | |
| CVE-2009-1617 | Teraway LinkTracker twLTadmin Cookie认证绕过漏洞 | |
| CVE-2008-6808 | Scripts For Sites EZ Link Directory 'links.php' SQL注入漏洞 | |
| CVE-2008-6807 | Ibiblio Osprey 'ListRecords.php'多个远程文件包含漏洞 | |
| CVE-2009-0220 | Microsoft PowerPoint PP4X32.DLL库多个栈溢出漏洞 | |
| CVE-2009-1137 | Microsoft PowerPoint PP4X32.DLL库栈溢出漏洞 | |
| CVE-2009-1131 | Microsoft PowerPoint 数据越界栈溢出漏洞 | |
| CVE-2009-1130 | Microsoft PowerPoint Notes容器堆溢出漏洞 | |
| CVE-2009-1129 | Microsoft PowerPoint PP7X32.DLL库栈溢出漏洞 | |
| CVE-2009-1128 | Microsoft PowerPoint PP7X32.DLL 多个栈溢出漏洞 | |
| CVE-2009-0227 | Microsoft PowerPoint PP4X32.DLL库栈溢出漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet