Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PixySoft E-Cart Art Parameter Remote Command Execution Vulnerability

PixySoft E-Cart is prone to a remote arbitrary command execution vulnerability. This issue presents itself due to insufficient sanitization of user-supplied data.

Specifically, the user-specified 'art' URI parameter is supplied to a Perl open() routine.

PixySoft E-Cart versions 1.1 is reported vulnerable to this issue.







 

Privacy Statement
Copyright 2008, SecurityFocus