info
discussion
exploit
solution
references
OsCommerce Product_info.PHP SQL Injection Vulnerability
Solution:
The vendor has released version 2.2 Milestone 2 060817 to address this issue; please see the reference section for details.
osCommerce osCommerce 2.2 ms2
osCommerce osCommerce 2.2 Milestone 2 Update 060817
http://www.oscommerce.com/solutions/downloads
Privacy Statement
Copyright 2010, SecurityFocus