CKGold Shopping Cart CVE-2008-2774 SQL-Injection Vulnerability

CKGold Shopping Cart is prone to a sql-injection vulnerability. SQL injection vulnerability in item.php in CartKeeper CKGold Shopping Cart 2.5 and 2.7 allows remote attackers to execute arbitrary SQL commands via the category_id parameter, a different vector than CVE-2007-4736.


 

Privacy Statement
Copyright 2010, SecurityFocus